Sploitus

CVE-2010-4772

1 known exploit for CVE-2010-4772

Cross-site scripting (XSS) vulnerability in blocks/lang.php in S-CMS 2.5 allows remote attackers to inject arbitrary web script or HTML via the id parameter to viewforum.php.

Affected products
S-Cms
Matteoiammarrone S-cms
= 2.5
Fix
Available
CVSS 2.0
4.3 MEDIUM
EPSS
1.5% (71th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2011-03-23
CVE-2010-4772 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2010-4772

Proof-of-concept code and exploit modules indexed by Sploitus