Multiple cross-site scripting (XSS) vulnerabilities in webfolio/admin/users/edit in Webfolio CMS 1.1.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) First name, (2) Last name or (3) Email (required) fields.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T19:17:27.094Z
Reserved: 2012-03-26T00:00:00
Link: CVE-2012-1899

No data.

Status : Deferred
Published: 2012-09-17T20:55:02.017
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-1899

No data.

No data.