4.3
CVSSv2

CVE-2011-3385

Published: 02/09/2011 Updated: 05/10/2011
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in WebsiteBaker prior to 2.8, as used in LEPTON and possibly other products, allows remote malicious users to inject arbitrary web script or HTML via unknown vectors, a different vulnerability than CVE-2006-2307.

Vulnerable Product Search on Vulmon Subscribe to Product

websitebaker2 websitebaker 2.6.7

lepton-cms lepton

websitebaker2 websitebaker