CVE-2009-4864
I-escorts Agency Script - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in escorts_search.php in I-Escorts Directory Script and Agency Script allow remote attackers to inject arbitrary web script or HTML via the (1) search_name and (2) languages parameters. NOTE: some of these details are obtained from third party information.
Exploits (1)
Scores
EPSS
0.0019
EPSS Percentile
41.0%
Classification
CWE
CWE-79
Status
published
Affected Products (3)
i-escorts/i-escorts_agency_script
i-escorts/i-escorts_directory_script
n/a/n/a
Timeline
Published
May 11, 2010
Tracked Since
Feb 18, 2026