CVE Database
/

CVE-2009-4713

Back to search

CVE-2009-4713

Published: Mar 15, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Qas (aka Quas) module for XOOPS Celepar allow remote attackers to inject arbitrary web script or HTML via (1) the cod_categoria parameter to categoria.php, (2) the opcao parameter to index.php, and the PATH_INFO to (3) categoria.php and (4) index.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

56596
vdb-entry
x_refsource_OSVDB
35820
vdb-entry
x_refsource_BID
9261
exploit
x_refsource_EXPLOIT-DB
35966
third-party-advisory
x_refsource_SECUNIA
56597
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now