4.3
CVSSv2

CVE-2009-3191

Published: 15/09/2009 Updated: 19/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in PAD Site Scripts 3.6 allow remote malicious users to inject arbitrary web script or HTML via the cat parameter to (1) rss.php and (2) opml.php.

Vulnerable Product Search on Vulmon Subscribe to Product

pad-site-scripts pad site scripts 3.6

Exploits

############################################################### #################### Viva IslaM Viva IslaM #################### ## ## Remote SQL Injection Vulnerability ( listphp string ) ## ## PAD Site Scripts v36 ## ## wwwpad-site-scriptscom ## ############################################################### ################################### ...