CVE-2004-1716

Cross-site scripting (XSS) vulnerability in PForum before 1.26 allows remote attackers to inject arbitrary web script or HTML via the (1) IRC Server or (2) AIM ID fields in the user profile.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:powie:pforum:1.24:*:*:*:*:*:*:*
cpe:2.3:a:powie:pforum:1.25:*:*:*:*:*:*:*

History

20 Nov 2024, 23:51

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=109267937212298&w=2 - () http://marc.info/?l=bugtraq&m=109267937212298&w=2 -
References () http://secunia.com/advisories/12317/ - Exploit, Patch, Vendor Advisory () http://secunia.com/advisories/12317/ - Exploit, Patch, Vendor Advisory
References () http://www.kb.cert.org/vuls/id/674542 - Exploit, Patch, Third Party Advisory, US Government Resource () http://www.kb.cert.org/vuls/id/674542 - Exploit, Patch, Third Party Advisory, US Government Resource
References () http://www.osvdb.org/8985 - Vendor Advisory () http://www.osvdb.org/8985 - Vendor Advisory
References () http://www.pscript.de/news/index.php - () http://www.pscript.de/news/index.php -
References () http://www.securityfocus.com/bid/10954 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/10954 - Exploit, Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/17003 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/17003 -

Information

Published : 2004-08-16 04:00

Updated : 2024-11-20 23:51


NVD link : CVE-2004-1716

Mitre link : CVE-2004-1716

CVE.ORG link : CVE-2004-1716


JSON object : View

Products Affected

powie

  • pforum