Vulnerability Database

290,020

Total vulnerabilities in the database

CVE-2012-6659

Cross-site scripting (XSS) vulnerability in the admin interface in Phorum before 5.2.19 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.

  • Published: Sep 19, 2014
  • Updated: Apr 13, 2023
  • CVE: CVE-2012-6659
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:N/I:P/A:N
Software From Fixed in
phorum / phorum - 5.2.18.x
phorum / phorum 5.2.10-rc1 5.2.10-rc1.x
phorum / phorum 5.2.5 5.2.5.x
phorum / phorum 5.2.9 5.2.9.x
phorum / phorum 5.2.12 5.2.12.x
phorum / phorum 5.2.2-beta 5.2.2-beta.x
phorum / phorum 5.2.15 5.2.15.x
phorum / phorum 5.2.14 5.2.14.x
phorum / phorum 5.2.7 5.2.7.x
phorum / phorum 5.2.6 5.2.6.x
phorum / phorum 5.2.4-rc2 5.2.4-rc2.x
phorum / phorum 5.2.3-rc1 5.2.3-rc1.x
phorum / phorum 5.2 5.2.x
phorum / phorum 5.2.10 5.2.10.x
phorum / phorum 5.2.13 5.2.13.x
phorum / phorum 5.2.15-a 5.2.15-a.x
phorum / phorum 5.2.16 5.2.16.x
phorum / phorum 5.2.8 5.2.8.x
phorum / phorum 5.2.1 5.2.1.x
phorum / phorum 5.2.11 5.2.11.x
phorum / phorum 5.2.12-a 5.2.12-a.x