VendorsSix Apartmovabletype5.03
Vulnerabilities

Six Apart MovableType 5.03

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2010-4511
Unspecified vulnerability in Movable Type 4.x before 4.35 and 5.x before 5.04 has unknown impact and attack vectors related to the "dynamic publishing error message."
Published 2010-12-09 · Modified
10.0EPSS 0.015
CVE-2010-4509
Multiple unspecified vulnerabilities in Movable Type 4.x before 4.35 and 5.x before 5.04 have unknown impact and attack vectors related to the (1) mt:AssetProperty and (2) mt:EntryFlag tags.
Published 2010-12-09 · Modified
10.0EPSS 0.015
CVE-2010-3922
SQL injection vulnerability in Movable Type 4.x before 4.35 and 5.x before 5.04 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Published 2010-12-09 · Modified
7.5EPSS 0.013
CVE-2014-0977
Cross-site scripting (XSS) vulnerability in the Rich Text Editor in Movable Type 5.0x, 5.1x before 5.161, 5.2.x before 5.2.9, and 6.0.x before 6.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Published 2014-01-10 · Modified
4.3EPSS 0.024
CVE-2010-3921
Cross-site scripting (XSS) vulnerability in Movable Type 4.x before 4.35 and 5.x before 5.04 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Published 2010-12-09 · Modified
4.3EPSS 0.013