4.3
CVSSv2

CVE-2010-2457

Published: 25/06/2010 Updated: 13/07/2010
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in index.php in K-Search allows remote malicious users to inject arbitrary web script or HTML via the term parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

qsoft-inc k-search

Exploits

#################################################### # Category: K-Search (SQL/XSS) Multiple Remote Vulnerabilities # Download: turn-knet/k-search/demo # Dork: inurl:K-Search, Powered By K-Search # Author: Sangteamtham [at] hcegroup[dot]net # Homepage: HCE group - bug-z0neinfo #################################################### Info: K- ...