CVE-2005-4489

Cross-site scripting (XSS) vulnerability in Scoop 1.1 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) type and (2) count parameters, and (3) the query string in a story.
Configurations

Configuration 1 (hide)

cpe:2.3:a:scoop:scoop:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:04

Type Values Removed Values Added
References () http://pridels0.blogspot.com/2005/12/scoop-xss-vuln.html - () http://pridels0.blogspot.com/2005/12/scoop-xss-vuln.html -
References () http://secunia.com/advisories/18182 - () http://secunia.com/advisories/18182 -
References () http://www.osvdb.org/21944 - () http://www.osvdb.org/21944 -
References () http://www.osvdb.org/21945 - () http://www.osvdb.org/21945 -
References () http://www.securityfocus.com/bid/16014 - Exploit () http://www.securityfocus.com/bid/16014 - Exploit
References () http://www.vupen.com/english/advisories/2005/3041 - () http://www.vupen.com/english/advisories/2005/3041 -

Information

Published : 2005-12-22 11:03

Updated : 2024-11-21 00:04


NVD link : CVE-2005-4489

Mitre link : CVE-2005-4489

CVE.ORG link : CVE-2005-4489


JSON object : View

Products Affected

scoop

  • scoop