Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2010-0726

Cross-site scripting (XSS) vulnerability in the tb-send.rb (TrackBack transmission) plugin in tDiary 2.2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unknown vectors, possibly related to the (1) plugin_tb_url and (2) plugin_tb_excerpt parameters.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 62.4%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2010-0726
  • Tdiary » Tdiary » Version: Any
    cpe:2.3:a:tdiary:tdiary:*
  • Tdiary » Tdiary » Version: 2.0.1
    cpe:2.3:a:tdiary:tdiary:2.0.1
  • Tdiary » Tdiary » Version: 2.0.2
    cpe:2.3:a:tdiary:tdiary:2.0.2
  • Tdiary » Tdiary » Version: 2.0.3
    cpe:2.3:a:tdiary:tdiary:2.0.3
  • Tdiary » Tdiary » Version: 2.1.1
    cpe:2.3:a:tdiary:tdiary:2.1.1
  • Tdiary » Tdiary » Version: 2.1.4.2006-11-15
    cpe:2.3:a:tdiary:tdiary:2.1.4.2006-11-15


Contact Us

Shodan ® - All rights reserved