Unrated severityNVD Advisory· Published Oct 1, 2012· Updated Apr 29, 2026
CVE-2012-0989
CVE-2012-0989
Description
Cross-site scripting (XSS) vulnerability in OneOrZero AIMS 2.8.0 Trial Edition build231211 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.
Affected products
1- cpe:2.3:a:oneorzero:action_and_information_management_system:2.8.0:build231211:trial:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.