Lucene search

K
prionPRIOn knowledge basePRION:CVE-2010-4607
HistoryDec 29, 2010 - 10:33 p.m.

Cross site scripting

2010-12-2922:33:00
PRIOn knowledge base
www.prio-n.com
2

6.1 Medium

AI Score

Confidence

High

0.018 Low

EPSS

Percentile

88.1%

Multiple cross-site scripting (XSS) vulnerabilities in Habari 0.6.5, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) additem_form parameter to system/admin/dash_additem.php and the (2) status_data[] parameter to system/admin/dash_status.php. NOTE: some of these details are obtained from third party information.

CPENameOperatorVersion
habarieq0.6.5

6.1 Medium

AI Score

Confidence

High

0.018 Low

EPSS

Percentile

88.1%

Related for PRION:CVE-2010-4607