Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-2157

Cross-site scripting (XSS) vulnerability in Comment.php in Serendipity 0.7 beta1, and possibly other versions before 0.7-beta3, allows remote attackers to inject arbitrary HTML and PHP code via the (1) email or (2) username field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 71.7%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2004-2157
  • S9y » Serendipity » Version: 0.7_beta1
    cpe:2.3:a:s9y:serendipity:0.7_beta1


Contact Us

Shodan ® - All rights reserved