Vulnerability Details CVE-2011-1134
Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to execute arbitrary code in the image manager.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.05
EPSS Ranking 89.1%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2011-1134
-
cpe:2.3:a:s9y:serendipity:0.3
-
cpe:2.3:a:s9y:serendipity:0.4
-
cpe:2.3:a:s9y:serendipity:0.7
-
cpe:2.3:a:s9y:serendipity:0.7.1
-
cpe:2.3:a:s9y:serendipity:0.8
-
cpe:2.3:a:s9y:serendipity:0.8.1
-
cpe:2.3:a:s9y:serendipity:0.8.2
-
cpe:2.3:a:s9y:serendipity:0.8.3
-
cpe:2.3:a:s9y:serendipity:0.8.4
-
cpe:2.3:a:s9y:serendipity:0.8.5
-
cpe:2.3:a:s9y:serendipity:0.9
-
cpe:2.3:a:s9y:serendipity:0.9.1
-
cpe:2.3:a:s9y:serendipity:1.0
-
cpe:2.3:a:s9y:serendipity:1.0.1
-
cpe:2.3:a:s9y:serendipity:1.0.2
-
cpe:2.3:a:s9y:serendipity:1.0.3
-
cpe:2.3:a:s9y:serendipity:1.0.4
-
cpe:2.3:a:s9y:serendipity:1.1
-
cpe:2.3:a:s9y:serendipity:1.1.1
-
cpe:2.3:a:s9y:serendipity:1.1.2
-
cpe:2.3:a:s9y:serendipity:1.1.3
-
cpe:2.3:a:s9y:serendipity:1.1.4
-
cpe:2.3:a:s9y:serendipity:1.2
-
cpe:2.3:a:s9y:serendipity:1.2.1
-
cpe:2.3:a:s9y:serendipity:1.3
-
cpe:2.3:a:s9y:serendipity:1.3.1
-
cpe:2.3:a:s9y:serendipity:1.4
-
cpe:2.3:a:s9y:serendipity:1.4.1
-
cpe:2.3:a:s9y:serendipity:1.5.1
-
cpe:2.3:a:s9y:serendipity:1.5.2
-
cpe:2.3:a:s9y:serendipity:1.5.3
-
cpe:2.3:a:s9y:serendipity:1.5.4