CVE-2010-4901
MySource Matrix 3.28.3 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in char_map.php in MySource Matrix 3.28.3 allow remote attackers to inject arbitrary web script or HTML via the (1) height or (2) width parameter.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Gjoko Krstic · textwebappsphp
https://www.exploit-db.com/exploits/34609
Scores
EPSS
0.0590
EPSS Percentile
90.5%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
squiz/mysource_matrix
n/a/n/a
Timeline
Published
Oct 08, 2011
Tracked Since
Feb 18, 2026