Multiple cross-site scripting (XSS) vulnerabilities in default.asp in WmsCms 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) search, (2) sbr, (3) p, and (4) sbl parameters, different vectors than CVE-2007-3137.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-10-03T16:21:09

Updated: 2022-10-03T16:21:09

Reserved: 2022-10-03T00:00:00


Link: CVE-2010-2316

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2010-06-17T16:30:02.123

Modified: 2010-06-18T04:00:00.000


Link: CVE-2010-2316

JSON object: View

cve-icon Redhat Information

No data.

CWE