CVE-2009-2589

Hutscripts PHP Website Script - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in Hutscripts PHP Website Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) feedback.php, (2) index.php, and (3) lostpassword.php.

Scores

EPSS 0.0052
EPSS Percentile 66.3%

Classification

CWE
CWE-79
Status published

Affected Products (2)

resalecode/hutscripts_php_website_script
n/a/n/a

Timeline

Published Jul 24, 2009
Tracked Since Feb 18, 2026