CVE-2011-2180

A Really Simple Chat <3.3-rc2 - XSS

Title source: llm
STIX 2.1

Description

Cross-site scripting (XSS) vulnerability in dereferer.php in A Really Simple Chat (ARSC) 3.3-rc2 allows remote attackers to inject arbitrary web script or HTML via the arsc_link parameter.

References (3)

Core 3
Core References
Exploit mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2011/06/02/1
Exploit mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2011/06/02/7

Scores

EPSS 0.0108
EPSS Percentile 61.3%

Details

CWE
CWE-79
Status published
Products (1)
reallysimplechat/really_simple_chat 3.3 rc2
Published Jun 29, 2011
Tracked Since Feb 18, 2026