Cross-site scripting (XSS) vulnerability in index.php in Plague News System 0.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the cid parameter.
References
Link | Resource |
---|---|
http://dark-assassins.com/forum/viewtopic.php?t=90 | Vendor Advisory |
http://secunia.com/advisories/15902 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-07-05 21:00
Updated : 2008-09-05 13:51
NVD link : CVE-2005-2167
Mitre link : CVE-2005-2167
JSON object : View
CWE
Products Affected
frozenplague.net
- plague_news_system