6.8
CVSSv2

CVE-2003-0287

Published: 16/06/2003 Updated: 11/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Movable Type prior to 2.6, and possibly other versions including 2.63, allows remote malicious users to insert arbitrary web script or HTML via the Name textbox, possibly when the "Allow HTML in comments?" option is enabled.

Vulnerable Product Search on Vulmon Subscribe to Product

six apart movable type 2.63

six apart movable type