CVE-2005-2488

Cross-site scripting (XSS) vulnerability in Web Content Management News System allows remote attackers to inject arbitrary web script or HTML via (1) the strRootpath parameter to validsession.php or (2) the strTable parameter to Admin/News/List.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:web_content_management:web_content_management_news_system:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-08-07 04:00

Updated : 2024-02-04 16:52


NVD link : CVE-2005-2488

Mitre link : CVE-2005-2488

CVE.ORG link : CVE-2005-2488


JSON object : View

Products Affected

web_content_management

  • web_content_management_news_system