Vulnerability Details CVE-2009-2324
Multiple cross-site scripting (XSS) vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to inject arbitrary web script or HTML via components in the samples (aka _samples) directory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 48.7%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2009-2324
-
cpe:2.3:a:fckeditor:fckeditor:0.8
-
cpe:2.3:a:fckeditor:fckeditor:0.8.5
-
cpe:2.3:a:fckeditor:fckeditor:0.9.0
-
cpe:2.3:a:fckeditor:fckeditor:0.9.1
-
cpe:2.3:a:fckeditor:fckeditor:0.9.2
-
cpe:2.3:a:fckeditor:fckeditor:0.9.3
-
cpe:2.3:a:fckeditor:fckeditor:0.9.4
-
cpe:2.3:a:fckeditor:fckeditor:0.9.5
-
cpe:2.3:a:fckeditor:fckeditor:1.0
-
cpe:2.3:a:fckeditor:fckeditor:1.1
-
cpe:2.3:a:fckeditor:fckeditor:1.2
-
cpe:2.3:a:fckeditor:fckeditor:1.2.2
-
cpe:2.3:a:fckeditor:fckeditor:1.2.4
-
cpe:2.3:a:fckeditor:fckeditor:1.3
-
cpe:2.3:a:fckeditor:fckeditor:1.3.1
-
cpe:2.3:a:fckeditor:fckeditor:1.4
-
cpe:2.3:a:fckeditor:fckeditor:1.5
-
cpe:2.3:a:fckeditor:fckeditor:1.6
-
cpe:2.3:a:fckeditor:fckeditor:2.0
-
cpe:2.3:a:fckeditor:fckeditor:2.0_fc
-
cpe:2.3:a:fckeditor:fckeditor:2.0_rc2
-
cpe:2.3:a:fckeditor:fckeditor:2.0rc2
-
cpe:2.3:a:fckeditor:fckeditor:2.0rc3
-
cpe:2.3:a:fckeditor:fckeditor:2.1
-
cpe:2.3:a:fckeditor:fckeditor:2.1.1
-
cpe:2.3:a:fckeditor:fckeditor:2.2
-
cpe:2.3:a:fckeditor:fckeditor:2.3
-
cpe:2.3:a:fckeditor:fckeditor:2.3.1
-
cpe:2.3:a:fckeditor:fckeditor:2.3.2
-
cpe:2.3:a:fckeditor:fckeditor:2.3.3
-
cpe:2.3:a:fckeditor:fckeditor:2.4
-
cpe:2.3:a:fckeditor:fckeditor:2.4.1
-
cpe:2.3:a:fckeditor:fckeditor:2.4.2
-
cpe:2.3:a:fckeditor:fckeditor:2.4.3
-
cpe:2.3:a:fckeditor:fckeditor:2.5
-
cpe:2.3:a:fckeditor:fckeditor:2.5.1
-
cpe:2.3:a:fckeditor:fckeditor:2.6
-
cpe:2.3:a:fckeditor:fckeditor:2.6.1
-
cpe:2.3:a:fckeditor:fckeditor:2.6.2
-
cpe:2.3:a:fckeditor:fckeditor:2.6.3
-
cpe:2.3:a:fckeditor:fckeditor:2.6.4