Arbitrary Script Injection in SilverStripe 2.3.x

Arbitrary Script Injection in SilverStripe 2.3.x

CVE-2010-5095 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Cross-site scripting (XSS) vulnerability in SilverStripe 2.3.x before 2.3.6 allows remote attackers to inject arbitrary web script or HTML via vectors related to DataObjectSet pagination.

Learn more about our Web App Pen Testing.