PT-2008-5438 · Opensolution · Opensolution Quick.Cms.Lite

Published

2008-09-19

·

Updated

2018-10-11

·

CVE-2008-4139

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions OpenSolution Quick.Cms.Lite version 2.1
Description A cross-site scripting (XSS) issue exists, allowing remote attackers to inject arbitrary web script or HTML. This is achieved via the query string in the admin.php file.
Recommendations For OpenSolution Quick.Cms.Lite version 2.1, consider disabling access to the admin.php file until a patch is available to prevent exploitation of the XSS vulnerability.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-4139

Affected Products

Opensolution Quick.Cms.Lite