4.3
CVSSv2

CVE-2012-6510

Published: 24/01/2013 Updated: 29/01/2013
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in NetArt Media Car Portal 3.0 allow remote malicious users to inject arbitrary web script or HTML via the (1) PWRS or (2) Description field when posting a new vehicle; (3) news title when creating news; (4) Name when creating a sub user; (5) group name when creating a group; or (6) dealer name, (7) first name, or (8) last name when changing a profile.

Vulnerable Product Search on Vulmon Subscribe to Product

netartmedia car portal 3.0

Exploits

Title: ====== Car Portal CMS v30 - Multiple Web Vulnerabilities Date: ===== 2012-04-24 References: =========== wwwvulnerability-labcom/get_contentphp?id=502 VL-ID: ===== 502 Introduction: ============= Car Portal is a php software product for running auto classifieds websites It provides functionality for the private sellers to sig ...