Lucene search

K
cvelistMitreCVELIST:CVE-2015-2289
HistoryMar 23, 2015 - 4:00 p.m.

CVE-2015-2289

2015-03-2316:00:00
mitre
www.cve.org

5.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.4%

Cross-site scripting (XSS) vulnerability in templates/2k11/admin/entries.tpl in Serendipity before 2.0.1 allows remote authenticated editors to inject arbitrary web script or HTML via the serendipity[cat][name] parameter to serendipity_admin.php, when creating a new category.

5.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.4%

Related for CVELIST:CVE-2015-2289