CVE

Id
47333  
CVE No.
CVE-2010-4749  
Status
Candidate  
Description
Multiple cross-site scripting (XSS) vulnerabilities in BLOG:CMS 4.2.1.e, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) body parameter to action.php and the (2) amount and (3) action parameters to admin/index.php.  
Phase
Assigned (20110301)  
Votes
None (candidate not yet proposed)  
Comments