4.3
CVSSv2

CVE-2009-4713

Published: 15/03/2010 Updated: 19/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in the Qas (aka Quas) module for XOOPS Celepar allow remote malicious users to inject arbitrary web script or HTML via (1) the cod_categoria parameter to categoria.php, (2) the opcao parameter to index.php, and the PATH_INFO to (3) categoria.php and (4) index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

alexandre amaral xoops celepar 1.0.1

Exploits

********************************************************************************************************** Xoops Celepar Module Qas Donwload of Xoops Celepar : wwwxoopsprgovbr/uploads/core/xoopscelepartargz Author: s4r4d0 mail:s4r4d0@yahoocom ********************************************************************************************* ...