4.3
CVSSv2

CVE-2009-4714

Published: 15/03/2010 Updated: 17/03/2010
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the quiz module for XOOPS Celepar allows remote malicious users to inject arbitrary web script or HTML via the PATH_INFO to cadastro_usuario.php.

Vulnerable Product Search on Vulmon Subscribe to Product

alexandre amaral xoops celepar 1.0.1

Exploits

********************************************************************************************************** Xoops Celepar Module Qas Donwload of Xoops Celepar : wwwxoopsprgovbr/uploads/core/xoopscelepartargz Author: s4r4d0 mail:s4r4d0@yahoocom ********************************************************************************************* ...