Multiple cross-site scripting (XSS) vulnerabilities in pragmaMx 1.x before 1.12.2 allow remote attackers to inject arbitrary web script or HTML via the (1) name parameter to modules.php or (2) img_url to includes/wysiwyg/spaw/editor/plugins/imgpopup/img_popup.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-02-11T19:22:00
Updated: 2024-08-06T19:34:25.766Z
Reserved: 2012-05-03T00:00:00
Link: CVE-2012-2452
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-02-11T20:15:10.587
Modified: 2020-02-12T15:46:39.940
Link: CVE-2012-2452
Redhat
No data.