CVE-2009-2324

FCKeditor <2.6.4.1 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to inject arbitrary web script or HTML via components in the samples (aka _samples) directory.

Scores

EPSS 0.0025
EPSS Percentile 48.5%

Classification

CWE
CWE-79
Status published

Affected Products (28)

fckeditor/fckeditor < 2.6.4
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
... and 13 more

Timeline

Published Jul 05, 2009
Tracked Since Feb 18, 2026