CVE-2012-2156 | Plume CMS up to 1.2.4 c_author cross site scripting (EDB-18699 / XFDB-74614)
A vulnerability, which was classified as problematic, has been found in Plume CMS up to 1.2.4. This issue affects some unknown processing. The manipulation of the argument c_author leads to cross site scripting.
The identification of this vulnerability is CVE-2012-2156. The attack may be initiated remotely. Furthermore, there is an exploit available.