Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Selçuk Miynat

Researcher fromNetsparker
#52694of 53,635
3.5Total CVSS
Vulnerabilities · 1
PT-2016-3929
3.5
2016-01-12
Serendipity · Serendipity · CVE-2015-8603
**Name of the Vulnerable Software and Affected Versions** Serendipity versions prior to 2.0.3 **Description** A cross-site scripting (XSS) issue allows remote attackers to inject arbitrary web script or HTML via the `serendipity[entry id]` parameter in an "edit" admin action to "serendipity admin.php". **Recommendations** For versions prior to 2.0.3, update to version 2.0.3 or later to resolve the issue.