Multiple cross-site scripting (XSS) vulnerabilities in index.tpl in Redakto WCMS 3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) iid, (2) iid2, (3) r, (4) cart, (5) str, (6) nf, and (7) a parameters.
References
Configurations
History
21 Nov 2024, 00:04
Type | Values Removed | Values Added |
---|---|---|
References | () http://pridels0.blogspot.com/2005/12/redakto-wcms-multiple-xss-vuln.html - | |
References | () http://secunia.com/advisories/18195 - | |
References | () http://www.securityfocus.com/bid/16013 - Exploit | |
References | () http://www.vupen.com/english/advisories/2005/3038 - |
Information
Published : 2005-12-22 11:03
Updated : 2024-11-21 00:04
NVD link : CVE-2005-4488
Mitre link : CVE-2005-4488
CVE.ORG link : CVE-2005-4488
JSON object : View
Products Affected
computeroil
- redakto_cms
CWE