MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in Diferior 8.03 allow remote attackers to inject arbitrary web script or HTML via the (1) post_content parameter to post/edit/2/p1.html, related to views/post.php; the (2) slogan parameter to admin/site/2.html, related to views/admin.php; or the (3) subcatname or (4) description parameter to admin/forum/create_sub.html, related to views/admin.php
Published Sep 27, 2011
4.3
MEDIUMCVSS 2.0
EPSS 1.77%
Description
Affected products
Remediation
Metrics
References (7)
Change history (0)
No recorded changes yet.