Skip to main content

CVE-2015-1159

CVSS Score Not Available
58.78%
MEDIUM RiskEPSS (98th percentile)

Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.

Published: 6/26/2015
Modified: 4/12/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

58.78%MEDIUM Exploitation Risk
98th percentile

This vulnerability has a 58.78% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.