CVE-2011-4265: XSS
Published Dec 8, 2011
·Updated
Cross-site scripting (XSS) vulnerability in phpWebSite before 1.0.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
16 affected components
phpWebSite phpWebSite=0.9.1
phpWebSite phpWebSite=0.9.2
phpWebSite phpWebSite=0.10.1
phpWebSite phpWebSite=0.9.3.1
phpWebSite phpWebSite=0.8.2
phpWebSite phpWebSite=0.9.3.3
phpWebSite phpWebSite=0.9.2.1
phpWebSite phpWebSite<=0.9.3.4
phpWebSite phpWebSite=0.10.0
phpWebSite phpWebSite=0.9.3.2
phpWebSite phpWebSite=0.10.2
phpWebSite phpWebSite=0.9.3
phpWebSite phpWebSite=0.10
phpWebSite phpWebSite=0.9.0
phpWebSite phpWebSite=0.8.3
phpWebSite phpWebSite=0.7.3
Event History
Dec 8, 2011
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4265?
CVE-2011-4265 is categorized as a medium severity cross-site scripting vulnerability.
2
How do I fix CVE-2011-4265?
To fix CVE-2011-4265, you should upgrade phpWebSite to version 1.0.0 or later.
3
What software is affected by CVE-2011-4265?
CVE-2011-4265 affects multiple versions of phpWebSite including versions 0.7.3 to 0.9.3.4.
4
What type of vulnerability is CVE-2011-4265?
CVE-2011-4265 is a cross-site scripting (XSS) vulnerability.
5
Can CVE-2011-4265 be exploited remotely?
Yes, CVE-2011-4265 can be exploited remotely to inject arbitrary web scripts or HTML.