4.3
CVSSv2

CVE-2012-5164

Published: 26/09/2012 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in Fork CMS prior to 3.2.7 allow remote malicious users to inject arbitrary web script or HTML via the term parameter to (1) autocomplete.php, (2) search/ajax/autosuggest.php, (3) livesuggest.php, or (4) save.php in frontend/modules/search/ajax.

Vulnerable Product Search on Vulmon Subscribe to Product

fork-cms fork cms 2.6.2

fork-cms fork cms 2.6.3

fork-cms fork cms 2.3.1

fork-cms fork cms 2.0.1

fork-cms fork cms 2.6.12

fork-cms fork cms 3.1.0

fork-cms fork cms 2.6.4

fork-cms fork cms 2.6.7

fork-cms fork cms 3.1.6

fork-cms fork cms 3.2.1

fork-cms fork cms 2.4.0

fork-cms fork cms 2.4.1

fork-cms fork cms 2.0.2

fork-cms fork cms 3.1.2

fork-cms fork cms 3.0.0

fork-cms fork cms 2.6.9

fork-cms fork cms 2.6.6

fork-cms fork cms 3.2.5

fork-cms fork cms 3.2.4

fork-cms fork cms 3.2.2

fork-cms fork cms 3.1.9

fork-cms fork cms 2.5.1

fork-cms fork cms 2.5.2

fork-cms fork cms 2.1.0

fork-cms fork cms 3.1.1

fork-cms fork cms 3.1.4

fork-cms fork cms 2.6.8

fork-cms fork cms 2.6.11

fork-cms fork cms 3.2.3

fork-cms fork cms 3.1.7

fork-cms fork cms 3.2.0

fork-cms fork cms

fork-cms fork cms 2.6.1

fork-cms fork cms 2.2.0

fork-cms fork cms 2.3.0

fork-cms fork cms 3.1.3

fork-cms fork cms 2.6.13

fork-cms fork cms 2.6.10

fork-cms fork cms 2.6.5

fork-cms fork cms 3.1.8

fork-cms fork cms 3.1.5

fork-cms fork cms 2.6.0