CVE-2009-4040

Cross-site scripting (XSS) vulnerability in phpMyFAQ before 2.0.17 and 2.5.x before 2.5.2, when used with Internet Explorer 6 or 7, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the search page.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 54%
VendorProductVersion
phpmyfaqphpmyfaq
𝑥
≤ 2.0.16
phpmyfaqphpmyfaq
0.60
phpmyfaqphpmyfaq
0.65
phpmyfaqphpmyfaq
0.70
phpmyfaqphpmyfaq
0.80
phpmyfaqphpmyfaq
0.80a:a
phpmyfaqphpmyfaq
0.85
phpmyfaqphpmyfaq
0.86
phpmyfaqphpmyfaq
0.87
phpmyfaqphpmyfaq
0.90
phpmyfaqphpmyfaq
0.95
phpmyfaqphpmyfaq
0.666
phpmyfaqphpmyfaq
1.0
phpmyfaqphpmyfaq
1.0.1
phpmyfaqphpmyfaq
1.0.1a:a
phpmyfaqphpmyfaq
1.1.0
phpmyfaqphpmyfaq
1.1.1
phpmyfaqphpmyfaq
1.1.2
phpmyfaqphpmyfaq
1.1.3
phpmyfaqphpmyfaq
1.1.4
phpmyfaqphpmyfaq
1.1.4a:a
phpmyfaqphpmyfaq
1.1.5
phpmyfaqphpmyfaq
1.2.0
phpmyfaqphpmyfaq
1.2.1
phpmyfaqphpmyfaq
1.2.2
phpmyfaqphpmyfaq
1.2.3
phpmyfaqphpmyfaq
1.2.4
phpmyfaqphpmyfaq
1.2.5
phpmyfaqphpmyfaq
1.2.5a:a
phpmyfaqphpmyfaq
1.2.5b:b
phpmyfaqphpmyfaq
1.3.0
phpmyfaqphpmyfaq
1.3.1
phpmyfaqphpmyfaq
1.3.2
phpmyfaqphpmyfaq
1.3.3
phpmyfaqphpmyfaq
1.3.4
phpmyfaqphpmyfaq
1.3.5
phpmyfaqphpmyfaq
1.3.6
phpmyfaqphpmyfaq
1.3.7
phpmyfaqphpmyfaq
1.3.8
phpmyfaqphpmyfaq
1.3.9
phpmyfaqphpmyfaq
1.3.9pl1:pl1
phpmyfaqphpmyfaq
1.3.10
phpmyfaqphpmyfaq
1.3.11
phpmyfaqphpmyfaq
1.3.12
phpmyfaqphpmyfaq
1.3.13
phpmyfaqphpmyfaq
1.3.14
phpmyfaqphpmyfaq
1.4
phpmyfaqphpmyfaq
1.4.0
phpmyfaqphpmyfaq
1.4.0a:a
phpmyfaqphpmyfaq
1.4.1
phpmyfaqphpmyfaq
1.4.2
phpmyfaqphpmyfaq
1.4.3
phpmyfaqphpmyfaq
1.4.4
phpmyfaqphpmyfaq
1.4.5
phpmyfaqphpmyfaq
1.4.6
phpmyfaqphpmyfaq
1.4.7
phpmyfaqphpmyfaq
1.4.8
phpmyfaqphpmyfaq
1.4.9
phpmyfaqphpmyfaq
1.4.10
phpmyfaqphpmyfaq
1.4.11
phpmyfaqphpmyfaq
1.4_alpha1:_alpha1
phpmyfaqphpmyfaq
1.4_alpha2:_alpha2
phpmyfaqphpmyfaq
1.4a:a
phpmyfaqphpmyfaq
1.5
phpmyfaqphpmyfaq
1.5:rc1
phpmyfaqphpmyfaq
1.5:rc2
phpmyfaqphpmyfaq
1.5:rc3
phpmyfaqphpmyfaq
1.5:rc4
phpmyfaqphpmyfaq
1.5:rc5
phpmyfaqphpmyfaq
1.5.0
phpmyfaqphpmyfaq
1.5.1
phpmyfaqphpmyfaq
1.5.2
phpmyfaqphpmyfaq
1.5.3
phpmyfaqphpmyfaq
1.5.4
phpmyfaqphpmyfaq
1.5.5
phpmyfaqphpmyfaq
1.5.6
phpmyfaqphpmyfaq
1.5.7
phpmyfaqphpmyfaq
1.5.8
phpmyfaqphpmyfaq
1.5.9
phpmyfaqphpmyfaq
1.5_alpha1:_alpha1
phpmyfaqphpmyfaq
1.5_alpha2:_alpha2
phpmyfaqphpmyfaq
1.5_beta1:_beta1
phpmyfaqphpmyfaq
1.5_beta2:_beta2
phpmyfaqphpmyfaq
1.5_beta3:_beta3
phpmyfaqphpmyfaq
1.6.0
phpmyfaqphpmyfaq
1.6.1
phpmyfaqphpmyfaq
1.6.2
phpmyfaqphpmyfaq
1.6.3
phpmyfaqphpmyfaq
1.6.4
phpmyfaqphpmyfaq
1.6.5
phpmyfaqphpmyfaq
1.6.6
phpmyfaqphpmyfaq
1.6.7
phpmyfaqphpmyfaq
1.6.8
phpmyfaqphpmyfaq
1.6.9
phpmyfaqphpmyfaq
1.6.10
phpmyfaqphpmyfaq
1.6.11
phpmyfaqphpmyfaq
1.6.12
phpmyfaqphpmyfaq
2.0.0
phpmyfaqphpmyfaq
2.0.1
phpmyfaqphpmyfaq
2.0.2
phpmyfaqphpmyfaq
2.0.3
phpmyfaqphpmyfaq
2.0.4
phpmyfaqphpmyfaq
2.0.5
phpmyfaqphpmyfaq
2.0.6
phpmyfaqphpmyfaq
2.0.7
phpmyfaqphpmyfaq
2.0.8
phpmyfaqphpmyfaq
2.0.9
phpmyfaqphpmyfaq
2.0.10
phpmyfaqphpmyfaq
2.0.11
phpmyfaqphpmyfaq
2.0.12
phpmyfaqphpmyfaq
2.0.13
phpmyfaqphpmyfaq
2.0.14
phpmyfaqphpmyfaq
2.0.15
phpmyfaqphpmyfaq
2.5.0
phpmyfaqphpmyfaq
2.5.1
𝑥
= Vulnerable software versions