Vulnerabilities > Tejimaya > Openpne > 3.4.14

DATE CVE VULNERABILITY TITLE RISK
2013-06-17 CVE-2013-2309 Cross-Site Scripting vulnerability in Tejimaya Openpne
Cross-site scripting (XSS) vulnerability in the management screen in OpenPNE 3.4.x before 3.4.21.1, 3.6.x before 3.6.9.1, and 3.8.x before 3.8.5.1 allows remote attackers to inject arbitrary web script or HTML via vectors involving the "mobile version color scheme."
network
tejimaya CWE-79
4.3