CVE-2005-1483

medium

Description

Multiple cross-site scripting (XSS) vulnerabilities in ArticleLive 2005 allow remote attackers to inject arbitrary web script or HTML via the (1) Query, (2) Username, (3) LastName, (4) Biography, or (5) BlogId parameter.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/20430

http://www.osvdb.org/16183

http://secunia.com/advisories/15250

http://marc.info/?l=bugtraq&m=111530871724865&w=2

Details

Source: Mitre, NVD

Published: 2005-05-11

Updated: 2017-07-11

Risk Information

CVSS v2

Base Score: 4.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 6.1

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Severity: Medium