VendorsMovabletypesix_apart_movable_typeall versions
Vulnerabilities

Movabletype Six Apart Movable Type

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2009-2480
Cross-site scripting (XSS) vulnerability in mt-wizard.cgi in Six Apart Movable Type 4.24, and 4.25 when global templates are not initialized, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Published 2009-07-16 · Modified
4.3EPSS 0.013