CompactCMS Multiple Cross Site Scripting Vulnerabilities

An attacker can exploit these issues by enticing an unsuspecting victim to follow a malicious URI.

The following example URIs are available:

http://www.example.com/afdrukken.php?page=">[XSS]
http://www.example.com/admin/includes/modules/permissions/permissions.Manage.php?status=notice&msg=[XSS]


 

Privacy Statement
Copyright 2010, SecurityFocus