Cross-site scripting (XSS) vulnerability in search.php in Esselbach Storyteller CMS 1.8 allows remote attackers to inject arbitrary web script or HTML via the query parameter, which is used by the Search field.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:04
Type | Values Removed | Values Added |
---|---|---|
References | () http://pridels0.blogspot.com/2005/12/esselbach-storyteller-cms-xss-vuln.html - | |
References | () http://secunia.com/advisories/18130 - Vendor Advisory | |
References | () http://www.osvdb.org/21787 - | |
References | () http://www.securityfocus.com/bid/15945 - | |
References | () http://www.vupen.com/english/advisories/2005/2985 - |
Information
Published : 2005-12-21 01:03
Updated : 2024-11-21 00:04
NVD link : CVE-2005-4433
Mitre link : CVE-2005-4433
CVE.ORG link : CVE-2005-4433
JSON object : View
Products Affected
esselbach_internet_solutions
- esselbach_storyteller_cms
CWE