CVE-2010-4909
PaysiteReviewCMS 1.1 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in PaysiteReviewCMS 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) q parameter to search.php or the (2) image parameter to image.php.
Exploits (2)
exploitdb
WRITEUP
VERIFIED
by Valentin Hoebel · textwebappsphp
https://www.exploit-db.com/exploits/34620
exploitdb
WRITEUP
VERIFIED
by Valentin Hoebel · textwebappsphp
https://www.exploit-db.com/exploits/34619
Scores
EPSS
0.0125
EPSS Percentile
79.2%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
mechbunny/paysitereviewcms
n/a/n/a
Timeline
Published
Oct 08, 2011
Tracked Since
Feb 18, 2026