CVE-2004-1640
N/A
N/A
Summary
Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 0.94 and 1.0 allow remote attackers to execute arbitrary web script and HTML via the (1) terme parameter to search.php or (2) letter parameter to letter.php.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17154
- http://www.osvdb.org/9394
- http://cyruxnet.org/modulo_dic_xoops.htm
- http://www.securityfocus.com/bid/11064
- http://marc.info/?l=bugtraq&m=109394077209963&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17152
- http://secunia.com/advisories/12424
- http://www.osvdb.org/9393
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17154
- http://www.osvdb.org/9394
- http://cyruxnet.org/modulo_dic_xoops.htm
- http://www.securityfocus.com/bid/11064
- http://marc.info/?l=bugtraq&m=109394077209963&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17152
- http://secunia.com/advisories/12424
- http://www.osvdb.org/9393
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.