Unrated severityNVD Advisory· Published Mar 31, 2015· Updated May 6, 2026
CVE-2015-0900
CVE-2015-0900
Description
Cross-site scripting (XSS) vulnerability in schedule.cgi in Nishishi Factory Fumy Teacher's Schedule Board 1.10 through 2.21 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
Affected products
5cpe:2.3:a:nishishi:fumy_teachers_schedule_board:1.10:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:nishishi:fumy_teachers_schedule_board:1.10:*:*:*:*:*:*:*
- cpe:2.3:a:nishishi:fumy_teachers_schedule_board:2.00:*:*:*:*:*:*:*
- cpe:2.3:a:nishishi:fumy_teachers_schedule_board:2.10:*:*:*:*:*:*:*
- cpe:2.3:a:nishishi:fumy_teachers_schedule_board:2.20:*:*:*:*:*:*:*
- cpe:2.3:a:nishishi:fumy_teachers_schedule_board:2.21:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- jvn.jp/en/jp/JVN74547976/index.htmlnvdVendor Advisory
- jvndb.jvn.jp/jvndb/JVNDB-2015-000043nvdVendor Advisory
- www.nishishi.com/cgi/ftsb/20150321.htmlnvdVendor Advisory
- jvn.jp/en/jp/JVN74547976/995592/index.htmlnvd
News mentions
0No linked articles in our index yet.