CVE-2009-2342
CMME <1.22 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in admin.php (aka the login page) in Content Management Made Easy (CMME) before 1.22 allows remote attackers to inject arbitrary web script or HTML via the username field.
Scores
EPSS
0.0030
EPSS Percentile
52.7%
Classification
CWE
CWE-79
Status
published
Affected Products (13)
hans_oesterholt/cmme
< 1.21
hans_oesterholt/cmme
hans_oesterholt/cmme
hans_oesterholt/cmme
hans_oesterholt/cmme
hans_oesterholt/cmme
hans_oesterholt/cmme
hans_oesterholt/cmme
hans_oesterholt/cmme
hans_oesterholt/cmme
hans_oesterholt/cmme
hans_oesterholt/cmme
n/a/n/a
Timeline
Published
Jul 07, 2009
Tracked Since
Feb 18, 2026