CVE-2005-3908
Amazon Shop < 5.0.0 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in search.php in GhostScripter Amazon Shop 5.0.0, and other versions before 5.0.2, allows remote attackers to inject web script or HTML via the query parameter.
Exploits (1)
References (6)
Scores
EPSS
0.0053
EPSS Percentile
66.8%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
amazon_shop/amazon_shop
< 5.0.0
Timeline
Published
Nov 30, 2005
Tracked Since
Feb 18, 2026