CVE-2010-2675
TSOKA:CMS <2.0 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in index.php in TSOKA:CMS 1.1, 1.9, and 2.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter in an articolo action.
Exploits (1)
Scores
EPSS
0.0019
EPSS Percentile
41.0%
Classification
CWE
CWE-79
Status
published
Affected Products (4)
alanzard/tsoka\
alanzard/tsoka\
alanzard/tsoka\
n/a/n/a
Timeline
Published
Jul 08, 2010
Tracked Since
Feb 18, 2026