Multiple cross-site scripting (XSS) vulnerabilities in post.asp in MaxWebPortal 1.3.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) mod, (2) M, or (3) type parameter.
References
Link | Resource |
---|---|
http://www.hackerscenter.com/archive/view.asp?id=2542 | Vendor Advisory |
http://www.securityfocus.com/bid/13601 | Vendor Advisory |
http://secunia.com/advisories/15329 | Exploit Patch Vendor Advisory |
http://www.osvdb.org/16501 | |
http://marc.info/?l=bugtraq&m=111584883727605&w=2 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/20560 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-05-10 21:00
Updated : 2017-07-10 18:32
NVD link : CVE-2005-1561
Mitre link : CVE-2005-1561
JSON object : View
CWE
Products Affected
maxwebportal
- maxwebportal