Back to search
CVE-2012-2099
Published: Jan 24, 2013
Modified: Aug 6, 2024
PUBLISHED
Description
Multiple cross-site scripting (XSS) vulnerabilities in Wikidforum 2.10 allow remote attackers to inject arbitrary web script or HTML via the (1) search field, or the (2) Author or (3) select_sort parameters in an advanced search.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20120310 Wikidforum 2.10 Multiple security vulnerabilities
mailing-list
x_refsource_BUGTRAQ
80838
vdb-entry
x_refsource_OSVDB
http://www.darksecurity.de/advisories/2012/SSCHADV2012-005.txt
x_refsource_MISC
[oss-security] 20120412 CVE-request: Wikidforum 2.10 multiple XSS and SQL-injection vulnerabilities SSCHADV2012-005
mailing-list
x_refsource_MLIST
52425
vdb-entry
x_refsource_BID
80839
vdb-entry
x_refsource_OSVDB
wikidforum-search-xss(73985)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now