4.3
CVSSv2

CVE-2014-2860

Published: 15/04/2014 Updated: 16/04/2014
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in PaperThin CommonSpot prior to 7.0.2 and 8.x prior to 8.0.3 allow remote malicious users to inject arbitrary web script or HTML via a crafted HTTP request to a (1) ColdFusion or (2) JavaScript component.

Vulnerable Product Search on Vulmon Subscribe to Product

paperthin commonspot content server 8.0.2

paperthin commonspot content server 8.0.0

paperthin commonspot content server

paperthin commonspot content server 8.0.1