Cross-site Scripting Vulnerability in Contao CMS by Contao
CVE-2011-0508

Currently unrated

Key Information:

Vendor

Contao

Vendor
CVE Published:
20 January 2011

What is CVE-2011-0508?

A cross-site scripting vulnerability exists in Contao CMS 2.9.2 and potentially other versions prior to 2.9.3. This flaw allows remote attackers to inject arbitrary web scripts or HTML through the HTTP X_FORWARDED_FOR header. The malicious script can be stored and improperly processed, potentially compromising the integrity of user interactions with the comments feature. It is crucial for users of affected versions to apply the latest security updates to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.