CVE-2009-2324
FCKeditor <2.6.4.1 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to inject arbitrary web script or HTML via components in the samples (aka _samples) directory.
Scores
EPSS
0.0025
EPSS Percentile
48.5%
Classification
CWE
CWE-79
Status
published
Affected Products (28)
fckeditor/fckeditor
< 2.6.4
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
fckeditor/fckeditor
... and 13 more
Timeline
Published
Jul 05, 2009
Tracked Since
Feb 18, 2026