Multiple cross-site scripting (XSS) vulnerabilities in comments.php in Simplog 0.9.3.2, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) cname (Name) or (2) email parameters.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2009-11-27T20:45:00
Updated: 2024-08-07T06:54:09.664Z
Reserved: 2009-11-27T00:00:00
Link: CVE-2009-4093

No data.

Status : Deferred
Published: 2009-11-29T13:07:34.967
Modified: 2025-04-09T00:30:58.490
Link: CVE-2009-4093

No data.