CVE-2009-4039: XSS
Published Nov 20, 2009
·Updated
Cross-site scripting (XSS) vulnerability in Piwigo before 2.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
6 affected components
Piwigo piwigo<=2.0.5
Piwigo piwigo=2.0.0
Piwigo piwigo=2.0.1
Piwigo piwigo=2.0.2
Piwigo piwigo=2.0.3
Piwigo piwigo=2.0.4
Remediation
Patch Available
Event History
Nov 20, 2009
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-4039?
CVE-2009-4039 is considered a medium severity cross-site scripting vulnerability.
2
How do I fix CVE-2009-4039?
To fix CVE-2009-4039, upgrade Piwigo to version 2.0.6 or later.
3
What software is affected by CVE-2009-4039?
CVE-2009-4039 affects Piwigo versions prior to 2.0.6, including 2.0.0 to 2.0.5.
4
What type of vulnerability is CVE-2009-4039?
CVE-2009-4039 is a cross-site scripting (XSS) vulnerability.
5
Are there any known exploits for CVE-2009-4039?
Yes, CVE-2009-4039 can be exploited by remote attackers to inject arbitrary web script or HTML.