CVE-2004-2162

Multiple cross-site scripting (XSS) vulnerabilities in TUTOS 1.1 allow remote attackers to inject arbitrary web script or HTML via (1) the search field of the Address Module or (2) the t parameter to app_new.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:tutos:tutos:1.1_2004-04-14:*:*:*:*:*:*:*

History

20 Nov 2024, 23:52

Type Values Removed Values Added
References () http://cvs.sourceforge.net/viewcvs.py/tutos/tutos/php/app_new.php?r1=1.58&r2=1.59 - () http://cvs.sourceforge.net/viewcvs.py/tutos/tutos/php/app_new.php?r1=1.58&r2=1.59 -
References () http://secunia.com/advisories/12606/ - Patch, Vendor Advisory () http://secunia.com/advisories/12606/ - Patch, Vendor Advisory
References () http://secunia.com/advisories/18954 - () http://secunia.com/advisories/18954 -
References () http://www.debian.org/security/2006/dsa-980 - () http://www.debian.org/security/2006/dsa-980 -
References () http://www.securityfocus.com/archive/1/375757 - Exploit, Vendor Advisory () http://www.securityfocus.com/archive/1/375757 - Exploit, Vendor Advisory
References () http://www.securityfocus.com/bid/11221 - () http://www.securityfocus.com/bid/11221 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/17445 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/17445 -

Information

Published : 2004-12-31 05:00

Updated : 2024-11-20 23:52


NVD link : CVE-2004-2162

Mitre link : CVE-2004-2162

CVE.ORG link : CVE-2004-2162


JSON object : View

Products Affected

tutos

  • tutos