CVE-2009-4586
Wowd client <1.3.1 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in index.html in Wowd client before 1.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) sortby, (2) tags, or (3) ctx parameter in a search action.
Scores
EPSS
0.0030
EPSS Percentile
52.7%
Classification
CWE
CWE-79
Status
published
Affected Products (3)
wowd/wowd
< 1.3.0
wowd/wowd
n/a/n/a
Timeline
Published
Jan 07, 2010
Tracked Since
Feb 18, 2026