WeBid Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2019-11592
Reference:
CVE-2019-11592
Title:
WeBid Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:
WeBid 1.2.2 has reflected XSS via the id parameter to admin/deletenews.php admin/editbannersuser.php admin/editfaqscategory.php or admin/excludeuser.php or the offset parameter to admin/edituser.php.