Lucene search

K
prionPRIOn knowledge basePRION:CVE-2015-2289
HistoryMar 23, 2015 - 4:59 p.m.

Cross site scripting

2015-03-2316:59:00
PRIOn knowledge base
www.prio-n.com
2

5.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.4%

Cross-site scripting (XSS) vulnerability in templates/2k11/admin/entries.tpl in Serendipity before 2.0.1 allows remote authenticated editors to inject arbitrary web script or HTML via the serendipity[cat][name] parameter to serendipity_admin.php, when creating a new category.

CPENameOperatorVersion
serendipityle2.0

5.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.4%

Related for PRION:CVE-2015-2289