MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in Newscoop 4.x through 4.1.0 allow remote attackers to inject arbitrary web script or HTML via vectors involving the (1) language parameter to application/modules/admin/controllers/LanguagesController.php or (2) user parameter to application/modules/admin/controllers/UserController.php
Published Feb 22, 2013
4.3
MEDIUMCVSS 2.0
EPSS 1.77%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.