CVE-2012-4437

EPSS 0.57%

Cross-site Scripting in SmartyException

發布日:2022/5/17修改日:2026/4/28
也稱為:GHSA-9gqj-ppv2-f2hqDEBIAN-CVE-2012-4437

描述

Cross-site scripting (XSS) vulnerability in the SmartyException class in Smarty (aka smarty-php) before 3.1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors that trigger a Smarty exception.

受影響套件(2)

參考連結(9)