CVE-2008-6278
Multiple cross-site scripting (XSS) vulnerabilities in product.php in RakhiSoftware Price Comparison Script (aka Shopping Cart) allow remote attackers to inject arbitrary web script or HTML via the (1) category_id and (2) subcategory_id parameters.
Date published : 2009-02-25
http://www.securityfocus.com/bid/32563
http://packetstormsecurity.com/0811-exploits/rakhi-sqlxssfpd.txt
