4.3
CVSSv2

CVE-2014-1944

Published: 09/03/2014 Updated: 09/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Ilch CMS 2.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the text parameter to index.php/guestbook/index/newentry.

Vulnerable Product Search on Vulmon Subscribe to Product

ilch ilch cms

Exploits

Advisory ID: HTB23203 Product: Ilch CMS Vendor: ilchde Vulnerable Version(s): 20 and probably prior Tested Version: 20 Advisory Publication: February 12, 2014 [without technical details] Vendor Notification: February 12, 2014 Public Disclosure: March 5, 2014 Vulnerability Type: Cross-Site Scripting [CWE-79] CVE Reference: CVE-2014-1944 Ri ...
Ilch CMS version 20 suffers from a cross site scripting vulnerability ...