CVE
- Id
- 65046
- CVE No.
- CVE-2013-5099
- Status
- Candidate
- Description
- Cross-site scripting (XSS) vulnerability in article.php in Anchor CMS 0.9.1, when comments are enabled, allows remote attackers to inject arbitrary web script or HTML via the Name field. NOTE: some sources have reported that comments.php is vulnerable, but certain functions from comments.php are used by article.php.
- Phase
- Assigned (20130809)
- Votes
- None (candidate not yet proposed)
- Comments