CVE-2010-3841
MEDIUM 4.3EPSS 3.0%
Multiple cross-site scripting (XSS) vulnerabilities in lib/TWiki.pm in TWiki before 5.0.1 allow remote attackers to inject arbitrary web script or HTML via (1) the rev parameter to the view script or (2) the query string to the login script.
- CVSS v2.0
- 4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N - EPSS
- 3.05% chance of exploitation in the next 30 days, 87th percentile
- Published
- 2010-10-18
- Updated
- 2024-08-07