CVE-2011-3392

Cross-site scripting (XSS) vulnerability in control.php in the controlcenter in Phorum before 5.2.17 allows remote attackers to inject arbitrary web script or HTML via the real_name parameter.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 55%
VendorProductVersion
phorumphorum
𝑥
≤ 5.2.16
phorumphorum
3.0.7
phorumphorum
3.1
phorumphorum
3.1.1
phorumphorum
3.1.1_pre:_pre
phorumphorum
3.1.1_rc2:_rc2
phorumphorum
3.1.1a:a
phorumphorum
3.1.2
phorumphorum
3.2
phorumphorum
3.2.2
phorumphorum
3.2.3
phorumphorum
3.2.3a:a
phorumphorum
3.2.3b:b
phorumphorum
3.2.4
phorumphorum
3.2.5
phorumphorum
3.2.6
phorumphorum
3.2.7
phorumphorum
3.2.8
phorumphorum
3.3.1
phorumphorum
3.3.1a:a
phorumphorum
3.3.2
phorumphorum
3.3.2a:a
phorumphorum
3.3.2b3:b3
phorumphorum
3.4
phorumphorum
3.4.1
phorumphorum
3.4.2
phorumphorum
3.4.3
phorumphorum
3.4.4
phorumphorum
3.4.5
phorumphorum
3.4.6
phorumphorum
3.4.7
phorumphorum
3.4.8
phorumphorum
3.4.8a:a
phorumphorum
4.3.7
phorumphorum
5.0.0_alpha:_alpha
phorumphorum
5.0.1_alpha:_alpha
phorumphorum
5.0.2_alpha:_alpha
phorumphorum
5.0.3_beta:_beta
phorumphorum
5.0.4_beta:_beta
phorumphorum
5.0.4a_beta:a_beta
phorumphorum
5.0.5_beta:_beta
phorumphorum
5.0.6_beta:_beta
phorumphorum
5.0.7_beta:_beta
phorumphorum
5.0.7a_beta:a_beta
phorumphorum
5.0.8_rc:_rc
phorumphorum
5.0.9
phorumphorum
5.0.10
phorumphorum
5.0.11
phorumphorum
5.0.12
phorumphorum
5.0.13
phorumphorum
5.0.13a:a
phorumphorum
5.0.14
phorumphorum
5.0.14a:a
phorumphorum
5.0.15
phorumphorum
5.0.15a:a
phorumphorum
5.0.16
phorumphorum
5.0.17
phorumphorum
5.0.17a:a
phorumphorum
5.0.18
phorumphorum
5.0.19
phorumphorum
5.0.20
phorumphorum
5.1.13
phorumphorum
5.1.14
phorumphorum
5.1.17
phorumphorum
5.1.18
phorumphorum
5.1.20
phorumphorum
5.1.21
phorumphorum
5.1.25
phorumphorum
5.2
phorumphorum
5.2.1
phorumphorum
5.2.2:beta
phorumphorum
5.2.3:rc1
phorumphorum
5.2.4:rc2
phorumphorum
5.2.5
phorumphorum
5.2.8
phorumphorum
5.2.9
phorumphorum
5.2.10
phorumphorum
5.2.10:rc1
phorumphorum
5.2.11
phorumphorum
5.2.12
phorumphorum
5.2.12a:a
phorumphorum
5.2.13
phorumphorum
5.2.14
phorumphorum
5.2.15
𝑥
= Vulnerable software versions