Unrated severityNVD Advisory· Published Nov 17, 2006· Updated Jun 16, 2026
CVE-2006-5960
CVE-2006-5960
Description
Multiple cross-site scripting (XSS) vulnerabilities in account_login.asp in A+ Store E-Commerce allow remote attackers to inject arbitrary web script or HTML via the (1) username (txtUserName) and (2) password (txtPassword) parameters. NOTE: portions of these details are obtained from third party information.
Affected products
1- cpe:2.3:a:web_inhabit:a\+_store_e-commerce:*:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
6News mentions
0No linked articles in our index yet.