Lucene search

K
prionPRIOn knowledge basePRION:CVE-2012-2331
HistoryAug 13, 2012 - 11:55 p.m.

Design/Logic Flaw

2012-08-1323:55:00
PRIOn knowledge base
www.prio-n.com
1

6.1 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

67.9%

Cross-site scripting (XSS) vulnerability in serendipity/serendipity_admin_image_selector.php in Serendipity before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via the serendipity[textarea] parameter. NOTE: this issue might be resultant from cross-site request forgery (CSRF).

6.1 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

67.9%