Lucene search

K
cvelistMitreCVELIST:CVE-2011-4565
HistoryNov 28, 2011 - 9:00 p.m.

CVE-2011-4565

2011-11-2821:00:00
mitre
www.cve.org
4

AI Score

5.9

Confidence

High

EPSS

0.003

Percentile

71.8%

Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.5.1.a, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via the (1) text parameter to include/formdhtmltextarea_preview.php or (2) img BBCODE tag within the message parameter to pmlite.php (aka Private Message). NOTE: some of these details are obtained from third party information.

AI Score

5.9

Confidence

High

EPSS

0.003

Percentile

71.8%

Related for CVELIST:CVE-2011-4565