CVE-2011-4172
24.10.2011, 18:55
Multiple cross-site scripting (XSS) vulnerabilities in KENT-WEB WEB FORUM before 5.1 allow remote attackers to inject arbitrary web script or HTML via (1) an e-mail address field or (2) a cookie, a related issue to CVE-2011-3383, CVE-2011-3983, and CVE-2011-3984.
Vendor | Product | Version |
---|---|---|
kent-web | web_forum | 𝑥 ≤ 5.1 |
𝑥
= Vulnerable software versions