4.3
CVSSv2

CVE-2014-2570

Published: 31/08/2015 Updated: 09/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in www/make_subset.php in PHP Font Lib prior to 0.3.1 allows remote malicious users to inject arbitrary web script or HTML via the name parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

php font lib project php font lib

Exploits

php-font-lib version 03 suffers from a reflective cross site scripting vulnerability ...