Description
Cross-site scripting (XSS) vulnerability in search.asp in ACS Blog 0.8 through 1.1b allows remote attackers to execute arbitrary web script or HTML via the search parameter.
Affected products
- asp_press / acs_blog0.8 – 0.8
- asp_press / acs_blog0.9 – 0.9
- asp_press / acs_blog1.0 – 1.0
- asp_press / acs_blog1.1b – 1.1b