Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2011-5255

Multiple cross-site scripting (XSS) vulnerabilities in admin/login in X3 CMS 0.4.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO, (2) username, or (3) password parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.7%
CVSS Severity
CVSS v2 Score 4.3
References
Products affected by CVE-2011-5255
  • X3cms » X3 Cms » Version: 0.4
    cpe:2.3:a:x3cms:x3_cms:0.4
  • X3cms » X3 Cms » Version: 0.4.0.3
    cpe:2.3:a:x3cms:x3_cms:0.4.0.3
  • X3cms » X3 Cms » Version: 0.4.1
    cpe:2.3:a:x3cms:x3_cms:0.4.1
  • X3cms » X3 Cms » Version: 0.4.2
    cpe:2.3:a:x3cms:x3_cms:0.4.2
  • X3cms » X3 Cms » Version: 0.4.2.1
    cpe:2.3:a:x3cms:x3_cms:0.4.2.1
  • X3cms » X3 Cms » Version: 0.4.3.1
    cpe:2.3:a:x3cms:x3_cms:0.4.3.1


Contact Us

Shodan ® - All rights reserved