4.3
CVSSv2

CVE-2014-100013

Published: 13/01/2015 Updated: 08/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in clientResponse 4.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) Subject or (2) Message field.

Vulnerable Product Search on Vulmon Subscribe to Product

clientresponse project clientresponse 4.1

Exploits

# Exploit Title: clientResponse Client Management XSS Vulnerability # Date: 14-10-2014 # Exploit Author: Halil Dalabasmaz # Version: v41 # Vendor Homepage: codecanyonnet/item/clientresponse-responsive-php-client-management/3797780 # Tested on: Chrome & Iceweasel # Vulnerability Description: ===Stored XSS=== The message system of scri ...