CVE-2008-3305
C. Desseno YouTube Blog 0.1 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in mensaje.php in C. Desseno YouTube Blog (ytb) 0.1 allows remote attackers to inject arbitrary web script or HTML via the m parameter.
Exploits (1)
References (5)
Scores
EPSS
0.0931
EPSS Percentile
92.6%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
carlos_desseno/youtube_blog
Timeline
Published
Jul 25, 2008
Tracked Since
Feb 18, 2026