CVE-2009-4822
Kasseler-cms Kasseler Cms - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kasseler CMS 1.3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) do, (2) id, and (3) uname parameters.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Gamoscu · textwebappsphp
https://www.exploit-db.com/exploits/33424
Scores
EPSS
0.0050
EPSS Percentile
65.6%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
kasseler-cms/kasseler_cms
n/a/n/a
Timeline
Published
Apr 27, 2010
Tracked Since
Feb 18, 2026