Vulnerabilities > Lightneasy > Low

DATE CVE VULNERABILITY TITLE RISK
2011-10-04 CVE-2011-3978 Cross-Site Scripting vulnerability in Lightneasy 3.2.4
Multiple cross-site scripting (XSS) vulnerabilities in LightNEasy.php in LightNEasy 3.2.4 allow remote authenticated users to inject arbitrary web script or HTML via the (1) commentemail, (2) commentmessage, or (3) commentname parameter in a sendcomment action for the news page.
network
lightneasy CWE-79
3.5