Security Advisory

CVE-2010-3977

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-11-03 01:00:00
Last updated 2024-08-07 03:26:12
Assigner mitre
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin 11.5 allow remote attackers to inject arbitrary web script or HTML via the (1) rs and (2) rsargs[] parameters.