Lucene search

K
nvd[email protected]NVD:CVE-2013-0734
HistoryMar 28, 2014 - 3:55 p.m.

CVE-2013-0734

2014-03-2815:55:08
CWE-79
web.nvd.nist.gov
3

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.9

Confidence

High

EPSS

0.003

Percentile

65.1%

Multiple cross-site scripting (XSS) vulnerabilities in the Mingle Forum plugin before 1.0.34 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) search_words parameter in a search action to wpf.class.php or (2) togroupusers parameter in an add_user_togroup action to fs-admin/fs-admin.php.

Affected configurations

Nvd
Node
cartpaujmingle-forumRange1.0.33
OR
cartpaujmingle-forumMatch1.0.00
OR
cartpaujmingle-forumMatch1.0.01
OR
cartpaujmingle-forumMatch1.0.02
OR
cartpaujmingle-forumMatch1.0.03
OR
cartpaujmingle-forumMatch1.0.04
OR
cartpaujmingle-forumMatch1.0.05
OR
cartpaujmingle-forumMatch1.0.06
OR
cartpaujmingle-forumMatch1.0.07
OR
cartpaujmingle-forumMatch1.0.08
OR
cartpaujmingle-forumMatch1.0.09
OR
cartpaujmingle-forumMatch1.0.10
OR
cartpaujmingle-forumMatch1.0.11
OR
cartpaujmingle-forumMatch1.0.12
OR
cartpaujmingle-forumMatch1.0.13
OR
cartpaujmingle-forumMatch1.0.14
OR
cartpaujmingle-forumMatch1.0.15
OR
cartpaujmingle-forumMatch1.0.16
OR
cartpaujmingle-forumMatch1.0.17
OR
cartpaujmingle-forumMatch1.0.18
OR
cartpaujmingle-forumMatch1.0.19
OR
cartpaujmingle-forumMatch1.0.20
OR
cartpaujmingle-forumMatch1.0.21
OR
cartpaujmingle-forumMatch1.0.21.1
OR
cartpaujmingle-forumMatch1.0.22
OR
cartpaujmingle-forumMatch1.0.23
OR
cartpaujmingle-forumMatch1.0.23.1
OR
cartpaujmingle-forumMatch1.0.23.2
OR
cartpaujmingle-forumMatch1.0.24
OR
cartpaujmingle-forumMatch1.0.25
OR
cartpaujmingle-forumMatch1.0.26
OR
cartpaujmingle-forumMatch1.0.27
OR
cartpaujmingle-forumMatch1.0.28
OR
cartpaujmingle-forumMatch1.0.28.1
OR
cartpaujmingle-forumMatch1.0.28.2
OR
cartpaujmingle-forumMatch1.0.29
OR
cartpaujmingle-forumMatch1.0.30
OR
cartpaujmingle-forumMatch1.0.31
OR
cartpaujmingle-forumMatch1.0.31.1
OR
cartpaujmingle-forumMatch1.0.31.2
OR
cartpaujmingle-forumMatch1.0.31.3
OR
cartpaujmingle-forumMatch1.0.31.4
OR
cartpaujmingle-forumMatch1.0.32
OR
cartpaujmingle-forumMatch1.0.32.1
AND
wordpresswordpressMatch-
VendorProductVersionCPE
cartpaujmingle-forum*cpe:2.3:a:cartpauj:mingle-forum:*:*:*:*:*:*:*:*
cartpaujmingle-forum1.0.00cpe:2.3:a:cartpauj:mingle-forum:1.0.00:*:*:*:*:*:*:*
cartpaujmingle-forum1.0.01cpe:2.3:a:cartpauj:mingle-forum:1.0.01:*:*:*:*:*:*:*
cartpaujmingle-forum1.0.02cpe:2.3:a:cartpauj:mingle-forum:1.0.02:*:*:*:*:*:*:*
cartpaujmingle-forum1.0.03cpe:2.3:a:cartpauj:mingle-forum:1.0.03:*:*:*:*:*:*:*
cartpaujmingle-forum1.0.04cpe:2.3:a:cartpauj:mingle-forum:1.0.04:*:*:*:*:*:*:*
cartpaujmingle-forum1.0.05cpe:2.3:a:cartpauj:mingle-forum:1.0.05:*:*:*:*:*:*:*
cartpaujmingle-forum1.0.06cpe:2.3:a:cartpauj:mingle-forum:1.0.06:*:*:*:*:*:*:*
cartpaujmingle-forum1.0.07cpe:2.3:a:cartpauj:mingle-forum:1.0.07:*:*:*:*:*:*:*
cartpaujmingle-forum1.0.08cpe:2.3:a:cartpauj:mingle-forum:1.0.08:*:*:*:*:*:*:*
Rows per page:
1-10 of 451

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.9

Confidence

High

EPSS

0.003

Percentile

65.1%

Related for NVD:CVE-2013-0734