Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-9433
Description:Multiple cross-site scripting (XSS) vulnerabilities in cms/front_content.php in Contenido before 4.9.6, when advanced mod rewrite (AMR) is disabled, allow remote attackers to inject arbitrary web script or HTML via the (1) idart, (2) lang, or (3) idcat parameter.
Test IDs: 1.3.6.1.4.1.25623.1.0.805231  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-9433
Bugtraq: 20141224 Reflecting XSS Vulnerability in CMS Contenido 4.9.x-4.9.5 (Google Search)
http://www.securityfocus.com/archive/1/534320/100/0/threaded
http://seclists.org/fulldisclosure/2014/Dec/111
http://packetstormsecurity.com/files/129713/CMS-Contenido-4.9.5-Cross-Site-Scripting.html
http://sroesemann.blogspot.de/2014/12/report-for-advisory-sroeadv-2014-03.html
http://secunia.com/advisories/61396
XForce ISS Database: contenido-frontcontent-xss(99497)
https://exchange.xforce.ibmcloud.com/vulnerabilities/99497




© 1998-2025 E-Soft Inc. All rights reserved.