Show plain JSON{"id": "CVE-2004-2084", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 4.3, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "NONE", "confidentialityImpact": "NONE"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}]}, "published": "2004-02-07T05:00:00.000", "references": [{"url": "http://secunia.com/advisories/10825", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://securitytracker.com/id?1008988", "tags": ["Exploit", "Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://www.osvdb.org/3889", "tags": ["Exploit", "Patch"], "source": "cve@mitre.org"}, {"url": "http://www.securityfocus.com/bid/9609", "tags": ["Exploit", "Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://www.systemsecure.org/advisories/ssadvisory09022004.php", "tags": ["Exploit", "Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15100", "source": "cve@mitre.org"}, {"url": "http://secunia.com/advisories/10825", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://securitytracker.com/id?1008988", "tags": ["Exploit", "Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.osvdb.org/3889", "tags": ["Exploit", "Patch"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.securityfocus.com/bid/9609", "tags": ["Exploit", "Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.systemsecure.org/advisories/ssadvisory09022004.php", "tags": ["Exploit", "Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15100", "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-Other"}]}], "descriptions": [{"lang": "en", "value": "Cross-site scripting (XSS) vulnerability in search.php in JShop E-Commerce Server allows remote attackers to inject arbitrary web script or HTML via the xSearch parameter."}], "lastModified": "2025-04-03T01:03:51.193", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_professional:3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BECAD52C-7F13-464D-9CCE-024D27488EFA"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_professional:3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "94AE2E29-FEDC-44BC-A446-C2BE37D6D438"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_professional:3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8CB17F10-893B-43B9-8AAC-5128DB5844CA"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_professional:3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C195A388-48B8-4D24-A39A-AA351D850AE8"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_professional:3.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "06C5B148-4B8A-4A4A-9C33-9FC636CFC6DD"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_server:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "54BA072D-17B6-454C-BC0E-78910D8CB56B"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_server:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B022F5D7-9345-4FFA-A00D-B1B5B47BA6CD"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_server:1.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0996428C-0D43-41C1-929E-0C35D9DDCCF8"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_server:1.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AF346A4A-8508-4A93-B482-CEA554BE6E66"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_server:1.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A99A20CE-70DF-478B-9099-9892EDE9EC54"}, {"criteria": "cpe:2.3:a:jshop_e-commerce:jshop_server:1.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B3CFCC4F-D4BF-4EE0-B47D-15AC87BC119E"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}