CVE-2009-3539
Yourfreeworld Ultra Classifieds Pro - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in YourFreeWorld Ultra Classifieds Pro allow remote attackers to inject arbitrary web script or HTML via the (1) cname parameter to subclass.php and the (2) sn parameter to listads.php.
Exploits (2)
Scores
EPSS
0.0067
EPSS Percentile
71.1%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
yourfreeworld/ultra_classifieds_pro
Timeline
Published
Oct 02, 2009
Tracked Since
Feb 18, 2026