Lucene search

K
cve[email protected]CVE-2010-2957
HistoryOct 03, 2022 - 4:21 p.m.

CVE-2010-2957

2022-10-0316:21:07
CWE-79
web.nvd.nist.gov
33
cve
2010
2957
cross-site scripting
xss
serendipity
security vulnerability

2.6 Low

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:N/I:P/A:N

5.8 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

55.4%

Cross-site scripting (XSS) vulnerability in Serendipity before 1.5.4, when “Remember me” logins are enabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected configurations

NVD
Node
s9yserendipityRange1.5.3
OR
s9yserendipityMatch0.3
OR
s9yserendipityMatch0.4
OR
s9yserendipityMatch0.5
OR
s9yserendipityMatch0.5pl1
OR
s9yserendipityMatch0.6
OR
s9yserendipityMatch0.6pl1
OR
s9yserendipityMatch0.6pl2
OR
s9yserendipityMatch0.6pl3
OR
s9yserendipityMatch0.6rc1
OR
s9yserendipityMatch0.6rc2
OR
s9yserendipityMatch0.7
OR
s9yserendipityMatch0.7beta1
OR
s9yserendipityMatch0.7beta2
OR
s9yserendipityMatch0.7beta3
OR
s9yserendipityMatch0.7beta4
OR
s9yserendipityMatch0.7rc1
OR
s9yserendipityMatch0.7.1
OR
s9yserendipityMatch0.8
OR
s9yserendipityMatch0.8beta5
OR
s9yserendipityMatch0.8beta6
OR
s9yserendipityMatch0.8beta6_snapshot
OR
s9yserendipityMatch0.8.1
OR
s9yserendipityMatch0.8.2
OR
s9yserendipityMatch0.8.3
OR
s9yserendipityMatch0.8.4
OR
s9yserendipityMatch0.8.5
OR
s9yserendipityMatch0.9
OR
s9yserendipityMatch0.9.1
OR
s9yserendipityMatch1.0
OR
s9yserendipityMatch1.0beta1
OR
s9yserendipityMatch1.0beta2
OR
s9yserendipityMatch1.0beta3
OR
s9yserendipityMatch1.0.1
OR
s9yserendipityMatch1.0.2
OR
s9yserendipityMatch1.0.3
OR
s9yserendipityMatch1.0.4
OR
s9yserendipityMatch1.1
OR
s9yserendipityMatch1.1beta1
OR
s9yserendipityMatch1.1.1
OR
s9yserendipityMatch1.1.2
OR
s9yserendipityMatch1.1.3
OR
s9yserendipityMatch1.1.4
OR
s9yserendipityMatch1.2
OR
s9yserendipityMatch1.2beta5
OR
s9yserendipityMatch1.2.1
OR
s9yserendipityMatch1.3
OR
s9yserendipityMatch1.3.1
OR
s9yserendipityMatch1.4
OR
s9yserendipityMatch1.4.1
OR
s9yserendipityMatch1.5
OR
s9yserendipityMatch1.5beta1
OR
s9yserendipityMatch1.5.1
OR
s9yserendipityMatch1.5.2

2.6 Low

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:N/I:P/A:N

5.8 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

55.4%