CVE-2007-1132

MTCMS 2.2 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in the "Contact Us" functionality in MTCMS 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) message and (2) title fields.

Scores

EPSS 0.0036
EPSS Percentile 57.9%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

mtcms/mtcms

Timeline

Published Feb 27, 2007
Tracked Since Feb 18, 2026