CVE-2012-2643: XSS
Published Jul 7, 2012
·Updated
Cross-site scripting (XSS) vulnerability in KENT-WEB YY-BOARD before 6.4 allows remote attackers to inject arbitrary web script or HTML via a crafted form entry.
Affected Software
1 affected component
KENT-WEB YY-BOARD<=6.3
Event History
Jul 7, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2643?
CVE-2012-2643 is classified as a medium severity vulnerability due to its potential impact on user data.
2
How do I fix CVE-2012-2643?
To resolve CVE-2012-2643, upgrade KENT-WEB YY-BOARD to version 6.4 or later.
3
What type of vulnerability is CVE-2012-2643?
CVE-2012-2643 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts.
4
Who is affected by CVE-2012-2643?
Users of KENT-WEB YY-BOARD prior to version 6.4 are affected by CVE-2012-2643.
5
Can CVE-2012-2643 be exploited remotely?
Yes, CVE-2012-2643 can be exploited remotely by attackers through crafted form entries.