4.3
CVSSv2

CVE-2012-6517

Published: 24/01/2013 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in DiY-CMS 1.0 allow remote malicious users to inject arbitrary web script or HTML via the (1) question parameter to in /modules/poll/add.php or (2) question or (3) answer parameter to modules/poll/edit.php.

Vulnerable Product Search on Vulmon Subscribe to Product

diy-cms diy-cms 1.0

Exploits

Title: ====== DIY CMS v10 Poll - Multiple Web Vulnerabilities Date: ===== 2012-04-26 References: =========== wwwvulnerability-labcom/get_contentphp?id=518 VL-ID: ===== 518 Introduction: ============= Do It Yourslef Content Management System is a feature-rich, php-built, mysql-based, opensource and free CMS It is suitable to man ...