Description
Multiple cross-site scripting (XSS) vulnerabilities in Free Reprintables ArticleFR 3.0.6 allow remote attackers to inject arbitrary web script or HTML via the (1) name parameter to dashboard/settings/categories/, (2) title or (3) rel parameter to dashboard/settings/links/, or (4) url parameter to dashboard/tools/pingservers/.
Exploits (1)
References (3)
Core 3
Core References
Exploit exploit
x_refsource_exploit-db
https://www.exploit-db.com/exploits/37596/
Exploit x_refsource_misc
http://www.zeroscience.mk/en/vulnerabilities/ZSL-2015-5247.php
Exploit x_refsource_misc
http://packetstormsecurity.com/files/132683/ArticleFR-3.0.6-Cross-Site-Scripting.html
Scores
EPSS
0.0713
EPSS Percentile
91.6%
Details
CWE
CWE-79
Status
published
Products (1)
freereprintables/articlefr
3.0.6
Published
Jul 16, 2015
Tracked Since
Feb 18, 2026