CVE-2006-5190 | osCommerce up to 2.2 Ms3 banner_manager.php zpage cross site scripting (EDB-28743 / XFDB-29355)
A vulnerability classified as problematic was found in osCommerce up to 2.2 Ms3. Affected by this vulnerability is an unknown functionality of the file banner_manager.php. Such manipulation of the argument zpage leads to basic cross site scripting.
This vulnerability is listed as CVE-2006-5190. The attack may be performed from remote. In addition, an exploit is available.