Description
Cross-site scripting (XSS) vulnerability in index.php in Arcade Trade Script 1.0 beta allows remote attackers to inject arbitrary web script or HTML via the q parameter in a gamelist action.
Affected products
- arcadetradescript / arcade_trade_script1.0_beta – 1.0_beta