2.1
CVSSv2

CVE-2013-3929

Published: 09/12/2013 Updated: 10/12/2013
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:N/AC:H/Au:S/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in admin/editevent.php in CMS Made Simple (CMSMS) 1.11.9 allows remote authenticated users with the "Modify Events" permission to inject arbitrary web script or HTML via the handler parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

cmsmadesimple cms made simple 1.11.9