CVE-2004-2656

Multiple cross-site scripting (XSS) vulnerabilities in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashcode) before R_2_5_0_41 allow remote attackers to inject arbitrary web script or HTML via (1) the topic parameter in search.pl and (2) the filter parameter in submit.pl.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:open_source_development_network:slashcode:*:*:*:*:*:*:*:*
cpe:2.3:a:open_source_development_network:slashcode:2.2.5:*:*:*:*:*:*:*

Information

Published : 2004-12-30 21:00

Updated : 2017-07-19 18:29


NVD link : CVE-2004-2656

Mitre link : CVE-2004-2656


JSON object : View

Advertisement

dedicated server usa

Products Affected

open_source_development_network

  • slashcode