CVE-2011-3984: XSS
Published Oct 24, 2011
·Updated
Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to "web form entries."
Affected Software
1 affected component
KENT-WEB WEB FORUM<=5.1
Event History
Oct 24, 2011
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-3984?
CVE-2011-3984 has a high severity rating due to its potential for remote code execution via cross-site scripting.
2
How do I fix CVE-2011-3984?
To mitigate CVE-2011-3984, upgrade KENT-WEB WEB FORUM to version 5.2 or later which addresses the XSS vulnerability.
3
What software versions are affected by CVE-2011-3984?
CVE-2011-3984 affects KENT-WEB WEB FORUM version 5.1 and earlier.
4
What is the nature of the vulnerability in CVE-2011-3984?
CVE-2011-3984 is a cross-site scripting (XSS) vulnerability allowing attackers to inject arbitrary web script or HTML.
5
Are there any known exploits for CVE-2011-3984?
Yes, there are known exploits that leverage the XSS vulnerability in CVE-2011-3984 to execute malicious scripts.