CVE-2010-4331
Seopanel - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in Seo Panel 2.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) default_news or (2) sponsors cookies, which are not properly handled by (a) controllers/index.ctrl.php or (b) controllers/settings.ctrl.php.
Exploits (1)
References (5)
Scores
EPSS
0.0137
EPSS Percentile
80.0%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
seopanel/seopanel
n/a/n/a
Timeline
Published
Jan 20, 2011
Tracked Since
Feb 18, 2026