New vulnerability on the NVD: CVE-2020-12058

Several XSS vulnerabilities in osCommerce CE Phoenix before 1.0.6.0 allow an attacker to inject and execute arbitrary JavaScript code. The malicious code can be injected as follows: the page parameter to catalog/admin/order_status.php, catalog/admin/tax_rates.php, catalog/admin/languages.php, catalog/admin/countries.php, catalog/admin/tax_classes.php, catalog/admin/reviews.php, or catalog/admin/zones.php; or the zpage or spage parameter to catalog/admin/geo_zones.php.

Published at: September 03, 2020 at 10:15AM
View on website

USD/JPY Price Analysis: Will a Data Heavy End to the Week Spur USD?

USD/JPY has risen off the a medium-term level of support. US data (ISM, initial jobless claims and NFP) has the potential to fuel or halt recent USD gains.

from DailyFX – Market News https://bit.ly/2Z4yua2
via IFTTT