4.3
CVSSv2

CVE-2009-4461

Published: 30/12/2009 Updated: 30/12/2009
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in FlatPress 0.909 allow remote malicious users to inject arbitrary web script or HTML via the PATH_INFO to (1) contact.php, (2) login.php, and (3) search.php.

Vulnerable Product Search on Vulmon Subscribe to Product

flatpress flatpress 0.909

Exploits

======================================================================================== | # Title : FlatPress Cross Site Scripting Vulnerability | | # Author : indoushka | | # email : indoushka@hotmailcom ...