CVE-2011-3610: XSS
Published Jan 22, 2020
·Updated
A Cross-site Scripting (XSS) vulnerability exists in the Serendipity freetag plugin before 3.30 in the tagcloud parameter to plugins/serendipityeventfreetag/tagcloud.swf.
Affected Software
1 affected component
S9Y Serendipity Event Freetag<3.30
Event History
Jan 22, 2020
CVE Published
via MITRE·03:43 PM
Data Sourced
via MITRE·03:43 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2011-3610.
2
What is the severity of CVE-2011-3610?
The severity of CVE-2011-3610 is medium with a CVSS score of 6.1.
3
What software is affected by CVE-2011-3610?
The Serendipity freetag plugin before version 3.30 is affected by CVE-2011-3610.
4
What is the CWE number for CVE-2011-3610?
The CWE number for CVE-2011-3610 is CWE-79.
5
How can the XSS vulnerability be exploited?
The XSS vulnerability in CVE-2011-3610 can be exploited through the tagcloud parameter in the Serendipity freetag plugin's tagcloud.swf file.