CVE-2012-2768

RTFM <2.4.3 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in the topic administration page in the RTFM extension 2.0.4 through 2.4.3 for Best Practical Solutions RT allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Scores

EPSS 0.0036
EPSS Percentile 57.6%

Classification

CWE
CWE-79
Status published

Affected Products (13)

best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
best_practical_solutions/request_tracker
n/a/n/a

Timeline

Published Aug 15, 2012
Tracked Since Feb 18, 2026