Reflected Cross-Site Scripting Vulnerability in BTITeam XBTIT 2.5.4 Signup Page

Reflected Cross-Site Scripting Vulnerability in BTITeam XBTIT 2.5.4 Signup Page

CVE-2018-15678 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

An issue was discovered in BTITeam XBTIT 2.5.4. The "act" parameter in the sign-up page available at /index.php?page=signup is vulnerable to reflected cross-site scripting.

Learn more about our Web Application Penetration Testing UK.