4.3
CVSSv2

CVE-2010-4895

Published: 08/10/2011 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in core/showsite.php in chillyCMS 1.1.3 allows remote malicious users to inject arbitrary web script or HTML via the name parameter (aka the username field). NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

chillycms chillycms 1.1.3

Exploits

##########################wwwBugReportir######################################## # # AmnPardaz Security Research Team # # Title: chillyCMS Multiple Vulnerabilities # Vendor: frozenpepperde/ # Vulnerable Version: 113 (Latest version till now) # Exploitation: Remote with browser # Fix: N/A ##################################### ...