CVE-2012-1470
Ocportal < 7.1.5 - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in code_editor.php in ocPortal before 7.1.6 allow remote attackers to inject arbitrary web script or HTML via the (1) path or (2) line parameters.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by High-Tech Bridge · textwebappsphp
https://www.exploit-db.com/exploits/37022
Scores
EPSS
0.0692
EPSS Percentile
91.3%
Classification
CWE
CWE-79
Status
published
Affected Products (50)
ocportal/ocportal
< 7.1.5
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
ocportal/ocportal
... and 35 more
Timeline
Published
Oct 01, 2012
Tracked Since
Feb 18, 2026