Lucene search

K
cvelistMitreCVELIST:CVE-2013-3728
HistoryMar 13, 2014 - 2:00 p.m.

CVE-2013-3728

2014-03-1314:00:00
mitre
www.cve.org
1

5.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.0%

Cross-site scripting (XSS) vulnerability in Kasseler CMS before 2 r1232 allows remote authenticated users with permissions to create categories to inject arbitrary web script or HTML via the cat parameter in an admin_new_category action to admin.php.

5.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.0%