Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2010-3841

Multiple cross-site scripting (XSS) vulnerabilities in lib/TWiki.pm in TWiki before 5.0.1 allow remote attackers to inject arbitrary web script or HTML via (1) the rev parameter to the view script or (2) the query string to the login script.

  • Published: Oct 18, 2010
  • Updated: Apr 13, 2023
  • CVE: CVE-2010-3841
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:N/I:P/A:N
Software From Fixed in
twiki / twiki 2000-12-01 2000-12-01.x
twiki / twiki 2004-09-02 2004-09-02.x
twiki / twiki 4.1.1 4.1.1.x
twiki / twiki 4.0.1 4.0.1.x
twiki / twiki 4.2.3 4.2.3.x
twiki / twiki 4.2.4 4.2.4.x
twiki / twiki 2001-09-01 2001-09-01.x
twiki / twiki - 5.0.0.x
twiki / twiki 4.3.0 4.3.0.x
twiki / twiki 4.3.2 4.3.2.x
twiki / twiki 2003-02-01 2003-02-01.x
twiki / twiki 4.0.3 4.0.3.x
twiki / twiki 4.0.4 4.0.4.x
twiki / twiki 2001-12-01 2001-12-01.x
twiki / twiki 2004-09-04 2004-09-04.x
twiki / twiki 2004-09-01 2004-09-01.x
twiki / twiki 2004-09-03 2004-09-03.x
twiki / twiki 4.0.0 4.0.0.x
twiki / twiki 4.1.0 4.1.0.x
twiki / twiki 4.3.1 4.3.1.x
twiki / twiki 4.2.2 4.2.2.x
twiki / twiki 4.0.2 4.0.2.x
twiki / twiki 4.0.5 4.0.5.x
twiki / twiki 4.1.2 4.1.2.x