CVE-2012-4336
15.09.2012, 17:55
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Flogr 2.5.6 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the PATH_INFO or (2) an arbitrary parameter.
Vendor | Product | Version |
---|---|---|
mike_carr | flogr | 𝑥 ≤ 2.5.6 |
mike_carr | flogr | 2.3 |
mike_carr | flogr | 2.3.3 |
mike_carr | flogr | 2.4 |
mike_carr | flogr | 2.5 |
mike_carr | flogr | 2.5.1 |
mike_carr | flogr | 2.5.2 |
mike_carr | flogr | 2.5.3 |
mike_carr | flogr | 2.5.4 |
mike_carr | flogr | 2.5.5 |
𝑥
= Vulnerable software versions
References