CVE-2012-6632

Vessio Netbill - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in Vessio NetBill 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) full name or (2) file title to accounts/admin/index.php or (3) comment parameter in the support page to accounts/index2.php.

Scores

EPSS 0.0034
EPSS Percentile 56.5%

Details

CWE
CWE-79
Status published
Products (2)
vessio/netbill
n/a/n/a
Published Jan 16, 2014
Tracked Since Feb 18, 2026