CVE-2009-2588
Hotscripts Type PHP Clone Script - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in Hotscripts Type PHP Clone Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) feedback.php, (2) index.php, and (3) lostpassword.php.
Exploits (3)
References (7)
Scores
EPSS
0.0199
EPSS Percentile
83.4%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
resalecode/hotscripts_type_php_clone_script
n/a/n/a
Timeline
Published
Jul 24, 2009
Tracked Since
Feb 18, 2026