Unrated severityNVD Advisory· Published Sep 24, 2008· Updated Apr 23, 2026
CVE-2008-3098
CVE-2008-3098
Description
Cross-site scripting (XSS) vulnerability in admin/usercheck.php in fuzzylime (cms) before 3.03 allows remote attackers to inject arbitrary web script or HTML via the user parameter to the login form.
Affected products
5cpe:2.3:a:fuzzylime:fuzzylime_cms:3.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:fuzzylime:fuzzylime_cms:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:fuzzylime:fuzzylime_cms:3.01:*:*:*:*:*:*:*
- cpe:2.3:a:fuzzylime:fuzzylime_cms:3.01a:*:*:*:*:*:*:*
- cpe:2.3:a:fuzzylime:fuzzylime_cms:3.01b:*:*:*:*:*:*:*
- cpe:2.3:a:fuzzylime:fuzzylime_cms:3.02:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- cms.fuzzylime.co.uk/st/content/download/nvdPatch
- secunia.com/advisories/31980nvdPatchVendor Advisory
- www.datensalat.eu/~fabian/cve/CVE-2008-3098-fuzzylime-cms.htmlnvdExploit
- www.securityfocus.com/bid/31306nvdExploit
- securityreason.com/securityalert/4303nvd
- www.securityfocus.com/archive/1/496589/100/0/threadednvd
- www.vupen.com/english/advisories/2008/2650nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/45342nvd
News mentions
0No linked articles in our index yet.