CVE-2015-1159
CVSS Score Not Available
58.78%
MEDIUM RiskEPSS (98th percentile)
Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.
Published: 6/26/2015
Modified: 4/12/2025
Vulnerability Summary
EPSS Score (Exploitation Probability)
58.78%MEDIUM Exploitation Risk
98th percentile
This vulnerability has a 58.78% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.