CyberRota Analysis
AI analysis pending.
CVE
CVE-2010-1724
Severity
MEDIUM
CVSS
4.3
EPSS
4.10%
Original NVD Description
Multiple cross-site scripting (XSS) vulnerabilities in Zikula Application Framework 1.2.2, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) func parameter to index.php, or the (2) lang parameter to index.php, which is not properly handled by ZLanguage.php.