Unrated severityNVD Advisory· Published May 11, 2009· Updated Apr 23, 2026
CVE-2009-1614
CVE-2009-1614
Description
Multiple cross-site scripting (XSS) vulnerabilities in Leap CMS 0.1.4 allow remote attackers to inject arbitrary web script or HTML via (1) the msg parameter (aka the message in an article comment) or (2) the searchterm parameter (aka the search post form). NOTE: some of these details are obtained from third party information.
Affected products
1- cpe:2.3:a:gowondesigns:leap:0.1.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- secunia.com/advisories/34943nvdVendor Advisory
- www.exploit-db.com/exploits/8577nvd
News mentions
0No linked articles in our index yet.