← Back

CVE-2009-3892

nvd nist
Published: Nov 17, 2009Modified: Apr 23, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in Best Practical Solutions RT 3.6.x before 3.6.9, 3.8.x before 3.8.5, and other 3.4.6 through 3.8.4 versions allows remote attackers to inject arbitrary web script or HTML via certain Custom Fields.

Affected (15)

Products: Bestpractical: Rt
1 product
Rt
Configuration A
15 vulnerable
Vulnerable SoftwareAffected Versions
Bestpractical
Version 3.4.6
Version 3.6.0
Version 3.6.1
Version 3.6.2
Version 3.6.3
Version 3.6.4
Version 3.6.5
Version 3.6.6
Version 3.6.7
Version 3.6.8
Version 3.8.0
Version 3.8.1
Version 3.8.2
Version 3.8.3
Version 3.8.4

Timeline

No history available yet.