4.3
CVE-2010-1482
- EPSS 0.29%
- Veröffentlicht 12.05.2010 16:05:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in admin/editprefs.php in the backend in CMS Made Simple (CMSMS) before 1.7.1 might allow remote attackers to inject arbitrary web script or HTML via the date_format_string parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cmsmadesimple ≫ Cms Made Simple Version <= 1.7
Cmsmadesimple ≫ Cms Made Simple Version0.10
Cmsmadesimple ≫ Cms Made Simple Version0.10.3
Cmsmadesimple ≫ Cms Made Simple Version0.10.4
Cmsmadesimple ≫ Cms Made Simple Version0.11
Cmsmadesimple ≫ Cms Made Simple Version0.11 Updatebeta5
Cmsmadesimple ≫ Cms Made Simple Version0.11 Updatebeta6
Cmsmadesimple ≫ Cms Made Simple Version0.11.1
Cmsmadesimple ≫ Cms Made Simple Version0.11.2
Cmsmadesimple ≫ Cms Made Simple Version0.12
Cmsmadesimple ≫ Cms Made Simple Version0.12 Updatebeta1
Cmsmadesimple ≫ Cms Made Simple Version0.12 Updatebeta2
Cmsmadesimple ≫ Cms Made Simple Version0.12.1
Cmsmadesimple ≫ Cms Made Simple Version0.12.2
Cmsmadesimple ≫ Cms Made Simple Version0.13 Updatebeta1
Cmsmadesimple ≫ Cms Made Simple Version0.13 Updatebeta2
Cmsmadesimple ≫ Cms Made Simple Version0.13 Updatebeta3
Cmsmadesimple ≫ Cms Made Simple Version1.0
Cmsmadesimple ≫ Cms Made Simple Version1.0 Updatebeta1
Cmsmadesimple ≫ Cms Made Simple Version1.0 Updatebeta2
Cmsmadesimple ≫ Cms Made Simple Version1.0 Updatebeta3
Cmsmadesimple ≫ Cms Made Simple Version1.0 Updatebeta4
Cmsmadesimple ≫ Cms Made Simple Version1.0 Updatebeta5
Cmsmadesimple ≫ Cms Made Simple Version1.0 Updatebeta6
Cmsmadesimple ≫ Cms Made Simple Version1.0.1
Cmsmadesimple ≫ Cms Made Simple Version1.0.2
Cmsmadesimple ≫ Cms Made Simple Version1.0.3
Cmsmadesimple ≫ Cms Made Simple Version1.0.4
Cmsmadesimple ≫ Cms Made Simple Version1.0.5
Cmsmadesimple ≫ Cms Made Simple Version1.0.6
Cmsmadesimple ≫ Cms Made Simple Version1.0.7
Cmsmadesimple ≫ Cms Made Simple Version1.0.8
Cmsmadesimple ≫ Cms Made Simple Version1.1
Cmsmadesimple ≫ Cms Made Simple Version1.1 Updaterc1
Cmsmadesimple ≫ Cms Made Simple Version1.1 Updaterc2
Cmsmadesimple ≫ Cms Made Simple Version1.1 Updaterc3
Cmsmadesimple ≫ Cms Made Simple Version1.1.1
Cmsmadesimple ≫ Cms Made Simple Version1.1.2
Cmsmadesimple ≫ Cms Made Simple Version1.1.3.1
Cmsmadesimple ≫ Cms Made Simple Version1.1.4.1
Cmsmadesimple ≫ Cms Made Simple Version1.2
Cmsmadesimple ≫ Cms Made Simple Version1.2 Updatebeta1
Cmsmadesimple ≫ Cms Made Simple Version1.2 Updatebeta2
Cmsmadesimple ≫ Cms Made Simple Version1.2 Updatebeta3
Cmsmadesimple ≫ Cms Made Simple Version1.2 Updaterc1
Cmsmadesimple ≫ Cms Made Simple Version1.2.1
Cmsmadesimple ≫ Cms Made Simple Version1.2.2
Cmsmadesimple ≫ Cms Made Simple Version1.2.3
Cmsmadesimple ≫ Cms Made Simple Version1.2.4
Cmsmadesimple ≫ Cms Made Simple Version1.2.5
Cmsmadesimple ≫ Cms Made Simple Version1.3
Cmsmadesimple ≫ Cms Made Simple Version1.3 Updatebeta1
Cmsmadesimple ≫ Cms Made Simple Version1.3 Updatebeta2
Cmsmadesimple ≫ Cms Made Simple Version1.3.1
Cmsmadesimple ≫ Cms Made Simple Version1.4
Cmsmadesimple ≫ Cms Made Simple Version1.4 Updatebeta1
Cmsmadesimple ≫ Cms Made Simple Version1.4 Updatebeta2
Cmsmadesimple ≫ Cms Made Simple Version1.4.1
Cmsmadesimple ≫ Cms Made Simple Version1.5
Cmsmadesimple ≫ Cms Made Simple Version1.5 Updatebeta1
Cmsmadesimple ≫ Cms Made Simple Version1.5.1
Cmsmadesimple ≫ Cms Made Simple Version1.5.2
Cmsmadesimple ≫ Cms Made Simple Version1.5.3
Cmsmadesimple ≫ Cms Made Simple Version1.5.4
Cmsmadesimple ≫ Cms Made Simple Version1.6
Cmsmadesimple ≫ Cms Made Simple Version1.6.1
Cmsmadesimple ≫ Cms Made Simple Version1.6.2
Cmsmadesimple ≫ Cms Made Simple Version1.6.3
Cmsmadesimple ≫ Cms Made Simple Version1.6.4
Cmsmadesimple ≫ Cms Made Simple Version1.6.5
Cmsmadesimple ≫ Cms Made Simple Version1.6.6
Cmsmadesimple ≫ Cms Made Simple Version1.6.7
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.29% | 0.49 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.