VYPR
Unrated severityNVD Advisory· Published Jan 3, 2015· Updated Jun 16, 2026

CVE-2010-5314

CVE-2010-5314

Description

Cross-site scripting (XSS) vulnerability in controllers/home_controller.php in BEdita before 3.1 allows remote attackers to inject arbitrary web script or HTML via the searchstring parameter to news/index.

Affected products

2
  • Bedita/Bedita2 versions
    cpe:2.3:a:chialab_\&_channelweb:bedita:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:chialab_\&_channelweb:bedita:*:*:*:*:*:*:*:*range: <=3.0.1.2550_\"betula\"
    • (no CPE)range: <3.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.