Unrated severityNVD Advisory· Published Jun 24, 2010· Updated Apr 29, 2026
CVE-2010-1625
CVE-2010-1625
Description
Cross-site scripting (XSS) vulnerability in LXR Cross Referencer before 0.9.7 allows remote attackers to inject arbitrary web script or HTML via vectors related to the search body and the results page for a search, a different vulnerability than CVE-2009-4497 and CVE-2010-1448.
Affected products
11cpe:2.3:a:malcom_box:lxr_cross_referencer:*:*:*:*:*:*:*:*+ 10 more
- cpe:2.3:a:malcom_box:lxr_cross_referencer:*:*:*:*:*:*:*:*range: <=0.9.6
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.3:*:*:*:*:*:*:*
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.7:*:*:*:*:*:*:*
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.8:*:*:*:*:*:*:*
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9:*:*:*:*:*:*:*
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.1:*:*:*:*:*:*:*
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.2:*:*:*:*:*:*:*
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.3:*:*:*:*:*:*:*
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.4:*:*:*:*:*:*:*
- cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6News mentions
0No linked articles in our index yet.