Cross-site scripting (XSS) vulnerabilities in Ekinboard 1.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in profile.php and (2) titles of posts.
References
Link | Resource |
---|---|
http://irannetjob.com/content/view/162/28/ | URL Repurposed |
http://secunia.com/advisories/17569 | |
http://securitytracker.com/id?1015207 | Exploit Vendor Advisory |
http://www.osvdb.org/20844 | |
http://www.securityfocus.com/bid/15443 | |
http://www.securityfocus.com/bid/15447 | Exploit |
http://www.vupen.com/english/advisories/2005/2419 |
Configurations
History
No history.
Information
Published : 2005-11-16 21:22
Updated : 2024-02-14 01:17
NVD link : CVE-2005-3638
Mitre link : CVE-2005-3638
CVE.ORG link : CVE-2005-3638
JSON object : View
Products Affected
ekinboard
- ekinboard
CWE