Unrated severityNVD Advisory· Published Jun 5, 2014· Updated Jun 16, 2026
CVE-2013-2618
CVE-2013-2618
Description
Cross-site scripting (XSS) vulnerability in editor.php in Network Weathermap before 0.97b allows remote attackers to inject arbitrary web script or HTML via the map_title parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:network-weathermap:.network_weathermap:*:a:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:network-weathermap:.network_weathermap:*:a:*:*:*:*:*:*range: <=0.97
- (no CPE)range: <=0.97a
Patches
Vulnerability mechanics
References
7- packetstormsecurity.com/files/121034/Network-Weathermap-0.97a-Cross-Site-Scripting.htmlnvdExploit
- seclists.org/fulldisclosure/2013/Apr/1nvdExploit
- www.exploit-db.com/exploits/24913nvdExploit
- www.network-weathermap.com/content/security-notice-cve-2013-2618-network-weathermap-097a-persistent-xssnvdVendor Advisory
- osvdb.org/91869nvd
- www.securityfocus.com/bid/58793nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/83187nvd
News mentions
0No linked articles in our index yet.