CVE-2010-2155

Zonecheck - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in zc/publisher/html.rb in ZoneCheck 2.1.0 allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) xmlnode.value, (2) zc-error text, (3) $zc_version, (4) domainname in a zc-title row, different vulnerabilities than CVE-2009-4882.

Scores

EPSS 0.0043
EPSS Percentile 62.3%

Classification

CWE
CWE-79
Status published

Affected Products (2)

zonecheck/zonecheck
n/a/n/a

Timeline

Published Jun 03, 2010
Tracked Since Feb 18, 2026