CVE-2009-4253
PowerPhlogger 2.2.5 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in dspStats.php in PowerPhlogger 2.2.5 allows remote attackers to inject arbitrary web script or HTML via the edit parameter.
Exploits (1)
Scores
EPSS
0.0096
EPSS Percentile
76.2%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
phpee/pphlogger
Timeline
Published
Dec 10, 2009
Tracked Since
Feb 18, 2026