CVE-2014-4734

e107 <2.0 alpha2 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in e107_admin/db.php in e107 2.0 alpha2 and earlier allows remote attackers to inject arbitrary web script or HTML via the type parameter.

Scores

EPSS 0.0038
EPSS Percentile 59.0%

Details

CWE
CWE-79
Status published
Products (3)
e107/e107 < 2.0
e107/e107
n/a/n/a
Published Jul 21, 2014
Tracked Since Feb 18, 2026