James Allsup

1 exploit Active since Jan 2016
CVE-2015-4671 WRITEUP MEDIUM WRITEUP
OpenCart < 2.1.0.1 - Cross-Site Scripting via zone_id Parameter
Cross-site scripting (XSS) vulnerability in OpenCart before 2.1.0.2 allows remote attackers to inject arbitrary web script or HTML via the zone_id parameter to index.php.
CVSS 6.1