Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

S(R1Pt

#51454of 53,632
4.3Total CVSS
Vulnerabilities · 1
PT-2009-4677
4.3
2009-06-26
Kasseler · Kasseler Cms · CVE-2009-2228
**Name of the Vulnerable Software and Affected Versions** Kasseler CMS (affected versions not specified) **Description** A cross-site scripting (XSS) issue exists, allowing remote attackers to inject arbitrary web script or HTML via the `url` parameter in a redirect action. This occurs in the `engine.php` file. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.