4.3
CVSSv2

CVE-2012-3840

Published: 03/07/2012 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in index.php/users/form/user_id in MyClientBase 0.12 allow remote malicious users to inject arbitrary web script or HTML via the (1) first_name or (2) last_name parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

myclientbase myclientbase 0.12

Exploits

Title: ====== MyClientBase v012 - Multiple Web Vulnerabilities Date: ===== 2012-04-30 References: =========== wwwvulnerability-labcom/get_contentphp?id=511 VL-ID: ===== 511 Introduction: ============= MyClientBase is a simple, intuitive, free and open source web based invoice management system developed with freelancers in mind ...