Логотип exploitDog
bind:CVE-2009-4408
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-4408

Количество 2

Количество 2

nvd логотип

CVE-2009-4408

около 16 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in models.parser in PyForum 1.0.3 and possibly earlier versions, and possibly zForum, allow remote attackers to inject arbitrary web script or HTML via crafted BBcode (1) img or (2) url tags, which are not properly handled when a post is viewed.

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-p27c-q9wc-vp8q

почти 4 года назад

Multiple cross-site scripting (XSS) vulnerabilities in models.parser in PyForum 1.0.3 and possibly earlier versions, and possibly zForum, allow remote attackers to inject arbitrary web script or HTML via crafted BBcode (1) img or (2) url tags, which are not properly handled when a post is viewed.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2009-4408

Multiple cross-site scripting (XSS) vulnerabilities in models.parser in PyForum 1.0.3 and possibly earlier versions, and possibly zForum, allow remote attackers to inject arbitrary web script or HTML via crafted BBcode (1) img or (2) url tags, which are not properly handled when a post is viewed.

CVSS2: 4.3
0%
Низкий
около 16 лет назад
github логотип
GHSA-p27c-q9wc-vp8q

Multiple cross-site scripting (XSS) vulnerabilities in models.parser in PyForum 1.0.3 and possibly earlier versions, and possibly zForum, allow remote attackers to inject arbitrary web script or HTML via crafted BBcode (1) img or (2) url tags, which are not properly handled when a post is viewed.

0%
Низкий
почти 4 года назад

Уязвимостей на страницу