CVE-2012-1188

EPSS 11.3%

Fork CMS Multiple XSS Vulnerabilities

Published: 5/17/2022Modified: 1/12/2024

Description

Multiple cross-site scripting (XSS) vulnerabilities in Fork CMS before 3.2.7 allow remote attackers to inject arbitrary web script or HTML via the (1) type or (2) querystring parameters to `private/en/error` or (3) name parameter to `private/en/locale/index`.

Affected packages (1)

References (8)