CVE-2009-2551
ScriptsEz Easy Image Downloader - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in ScriptsEz Easy Image Downloader allow remote attackers to inject arbitrary web script or HTML via the id parameter in a detail action to (1) main.php and possibly (2) demo_page.php.
Exploits (1)
References (5)
Scores
EPSS
0.0278
EPSS Percentile
85.9%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
scriptsez/easy_image_downloader
n/a/n/a
Timeline
Published
Jul 20, 2009
Tracked Since
Feb 18, 2026