Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2011-3841

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2011-3841
Last Modified 27 Dec 2011 12:25:39
Published 27 Dec 2011 06:55:07
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2011-3841

Summary

Cross-site scripting (XSS) vulnerability in uploadify/get_profile_avatar.php in the WP Symposium plugin before 11.12.08 for WordPress allows remote attackers to inject arbitrary web script or HTML via the uid parameter.

Vulnerable Systems

Application

  • Wpsymposium Wp Symposium 0.1.10

  • Wpsymposium Wp Symposium 0.1.10.1

  • Wpsymposium Wp Symposium 0.1.11

  • Wpsymposium Wp Symposium 0.1.12

  • Wpsymposium Wp Symposium 0.1.12.1

  • Wpsymposium Wp Symposium 0.1.13

  • Wpsymposium Wp Symposium 0.1.14

  • Wpsymposium Wp Symposium 0.1.14.2

  • Wpsymposium Wp Symposium 0.1.15

  • Wpsymposium Wp Symposium 0.1.16

  • Wpsymposium Wp Symposium 0.1.16.1

  • Wpsymposium Wp Symposium 0.1.16.2

  • Wpsymposium Wp Symposium 0.1.16.3

  • Wpsymposium Wp Symposium 0.1.17

  • Wpsymposium Wp Symposium 0.1.18

  • Wpsymposium Wp Symposium 0.1.18.1

  • Wpsymposium Wp Symposium 0.1.19

  • Wpsymposium Wp Symposium 0.1.2

  • Wpsymposium Wp Symposium 0.1.20

  • Wpsymposium Wp Symposium 0.1.20.1

  • Wpsymposium Wp Symposium 0.1.21

  • Wpsymposium Wp Symposium 0.1.22

  • Wpsymposium Wp Symposium 0.1.23

  • Wpsymposium Wp Symposium 0.1.24

  • Wpsymposium Wp Symposium 0.1.25

  • Wpsymposium Wp Symposium 0.1.26

  • Wpsymposium Wp Symposium 0.1.26.1

  • Wpsymposium Wp Symposium 0.1.27

  • Wpsymposium Wp Symposium 0.1.27.1

  • Wpsymposium Wp Symposium 0.1.28

  • Wpsymposium Wp Symposium 0.1.29

  • Wpsymposium Wp Symposium 0.1.29.1

  • Wpsymposium Wp Symposium 0.1.29.2

  • Wpsymposium Wp Symposium 0.1.29.4

  • Wpsymposium Wp Symposium 0.1.3

  • Wpsymposium Wp Symposium 0.1.30

  • Wpsymposium Wp Symposium 0.1.30.2

  • Wpsymposium Wp Symposium 0.1.31

  • Wpsymposium Wp Symposium 0.1.32

  • Wpsymposium Wp Symposium 0.1.33

  • Wpsymposium Wp Symposium 0.1.33.1

  • Wpsymposium Wp Symposium 0.1.33.2

  • Wpsymposium Wp Symposium 0.1.33.3

  • Wpsymposium Wp Symposium 0.1.33.4

  • Wpsymposium Wp Symposium 0.1.33.5

  • Wpsymposium Wp Symposium 0.1.34

  • Wpsymposium Wp Symposium 0.1.34.1

  • Wpsymposium Wp Symposium 0.1.34.2

  • Wpsymposium Wp Symposium 0.1.4

  • Wpsymposium Wp Symposium 0.1.5

  • Wpsymposium Wp Symposium 0.1.6

  • Wpsymposium Wp Symposium 0.1.7

  • Wpsymposium Wp Symposium 0.1.7.1

  • Wpsymposium Wp Symposium 0.1.8

  • Wpsymposium Wp Symposium 0.1.8.1

  • Wpsymposium Wp Symposium 0.1.8.2

  • Wpsymposium Wp Symposium 0.1.9

  • Wpsymposium Wp Symposium 0.35

  • Wpsymposium Wp Symposium 0.36

  • Wpsymposium Wp Symposium 0.36.1

  • Wpsymposium Wp Symposium 0.37

  • Wpsymposium Wp Symposium 0.38

  • Wpsymposium Wp Symposium 0.38.1

  • Wpsymposium Wp Symposium 0.38.2

  • Wpsymposium Wp Symposium 0.39

  • Wpsymposium Wp Symposium 0.39.1

  • Wpsymposium Wp Symposium 0.40.1

  • Wpsymposium Wp Symposium 0.41

  • Wpsymposium Wp Symposium 0.42

  • Wpsymposium Wp Symposium 0.43

  • Wpsymposium Wp Symposium 0.44

  • Wpsymposium Wp Symposium 0.45

  • Wpsymposium Wp Symposium 0.46

  • Wpsymposium Wp Symposium 0.46.1

  • Wpsymposium Wp Symposium 0.47.2

  • Wpsymposium Wp Symposium 0.48.1

  • Wpsymposium Wp Symposium 0.48.2

  • Wpsymposium Wp Symposium 0.49

  • Wpsymposium Wp Symposium 0.49.1

  • Wpsymposium Wp Symposium 0.49.5

  • Wpsymposium Wp Symposium 0.49.6

  • Wpsymposium Wp Symposium 0.49.8

  • Wpsymposium Wp Symposium 0.49.9

  • Wpsymposium Wp Symposium 0.50

  • Wpsymposium Wp Symposium 0.51

  • Wpsymposium Wp Symposium 0.51.1

  • Wpsymposium Wp Symposium 0.51.2

  • Wpsymposium Wp Symposium 0.52

  • Wpsymposium Wp Symposium 0.52.1

  • Wpsymposium Wp Symposium 0.52.3

  • Wpsymposium Wp Symposium 0.52.4

  • Wpsymposium Wp Symposium 0.52.5

  • Wpsymposium Wp Symposium 0.53.10

  • Wpsymposium Wp Symposium 0.53.3

  • Wpsymposium Wp Symposium 0.53.4

  • Wpsymposium Wp Symposium 0.53.5

  • Wpsymposium Wp Symposium 0.53.6

  • Wpsymposium Wp Symposium 0.53.8

  • Wpsymposium Wp Symposium 0.53.9

  • Wpsymposium Wp Symposium 0.54

  • Wpsymposium Wp Symposium 0.55

  • Wpsymposium Wp Symposium 0.55.1

  • Wpsymposium Wp Symposium 0.56

  • Wpsymposium Wp Symposium 0.56.1

  • Wpsymposium Wp Symposium 0.56.2

  • Wpsymposium Wp Symposium 0.56.3

  • Wpsymposium Wp Symposium 0.57.1

  • Wpsymposium Wp Symposium 0.57.2

  • Wpsymposium Wp Symposium 0.58

  • Wpsymposium Wp Symposium 0.58.1

  • Wpsymposium Wp Symposium 0.59

  • Wpsymposium Wp Symposium 0.59.1

  • Wpsymposium Wp Symposium 0.59.2

  • Wpsymposium Wp Symposium 0.59.5

  • Wpsymposium Wp Symposium 0.59.6

  • Wpsymposium Wp Symposium 0.60

  • Wpsymposium Wp Symposium 0.61

  • Wpsymposium Wp Symposium 0.61.1

  • Wpsymposium Wp Symposium 0.62

  • Wpsymposium Wp Symposium 0.62.1

  • Wpsymposium Wp Symposium 0.62.2

  • Wpsymposium Wp Symposium 0.63

  • Wpsymposium Wp Symposium 0.63.1

  • Wpsymposium Wp Symposium 0.63.2

  • Wpsymposium Wp Symposium 0.63.2.1

  • Wpsymposium Wp Symposium 0.63.3

  • Wpsymposium Wp Symposium 0.64

  • Wpsymposium Wp Symposium 11.11.26

  • Wpsymposium Wp Symposium 11.8.18

  • Wpsymposium Wp Symposium 11.8.19

  • Wpsymposium Wp Symposium 11.8.19.1

  • Wpsymposium Wp Symposium 11.8.21

  • Wpsymposium Wp Symposium 11.8.27

  • Wpsymposium Wp Symposium 11.9.1

  • Wpsymposium Wp Symposium 11.9.10

  • Wpsymposium Wp Symposium 11.9.4

  • Wpsymposium Wp Symposium0.1.11.1

  • Wpsymposium Wp Symposium0.1.14.1

  • Wpsymposium Wp Symposium0.1.29.3

  • Wpsymposium Wp Symposium0.57


References

XF - wpsymposium-getprofileavatar-xss(71748)

MISC - http://www.wpsymposium.com/2011/12/v11-12-08/

BID - 51017

MISC - http://secunia.com/secunia_research/2011-82/

SECUNIA - 47243


Last Updated: 27 May 2016 10:57:58