CVE-2014-8996
20.11.2014, 13:55
Multiple cross-site scripting (XSS) vulnerabilities in Nibbleblog before 4.0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) author_name or (2) content parameter to index.php.
| Vendor | Product | Version |
|---|---|---|
| nibbleblog | nibbleblog | 𝑥 ≤ 4.0.1 |
𝑥
= Vulnerable software versions
References