WeBid Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2019-11592 - Vulnerability Database

WeBid Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2019-11592

Medium
Reference: CVE-2019-11592
Title: WeBid Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

WeBid 1.2.2 has reflected XSS via the id parameter to admin/deletenews.php admin/editbannersuser.php admin/editfaqscategory.php or admin/excludeuser.php or the offset parameter to admin/edituser.php.