Unrated severityNVD Advisory· Published Nov 17, 2006· Updated Apr 23, 2026
CVE-2006-5960
CVE-2006-5960
Description
Multiple cross-site scripting (XSS) vulnerabilities in account_login.asp in A+ Store E-Commerce allow remote attackers to inject arbitrary web script or HTML via the (1) username (txtUserName) and (2) password (txtPassword) parameters. NOTE: portions of these details are obtained from third party information.
Affected products
1- cpe:2.3:a:web_inhabit:a\+_store_e-commerce:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6News mentions
0No linked articles in our index yet.