CVE-2010-4355

Dadabik < 4.3 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in DaDaBIK before 4.3 beta2, when the insert or edit feature is enabled, allows remote authenticated users to inject arbitrary web script or HTML via the select_single parameter.

Scores

EPSS 0.0020
EPSS Percentile 41.9%

Classification

CWE
CWE-79
Status published

Affected Products (42)

dadabik/dadabik
dadabik/dadabik < 4.3
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
dadabik/dadabik
... and 27 more

Timeline

Published Dec 01, 2010
Tracked Since Feb 18, 2026