3.5
CVSSv2

CVE-2013-7274

Published: 08/01/2014 Updated: 29/08/2017
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 355
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Wallpaper Script 3.5.0082 allows remote authenticated users to inject arbitrary web script or HTML via the title field in a wallpaper file upload.

Vulnerable Product Search on Vulmon Subscribe to Product

wallpaperscript wallpaperscript 3.5.0082

Exploits

[~] Exploit Title : Wallpaper Script Stored XSS Vulnerability [~] D0rk Google : [~] Author : nullp0int3r (0x00p0int3r@gmailcom) [~] Version : 350082 [~] Date : 2013-12-14 [~] Vendor Homepage: wwwwallpaperscriptcom/ [~] Test on : Windows Exploitation: 1) Register and log on as a regular member 2) Click on "Add Wallpaper" 3) Write in t ...