4.3
CVE-2004-1499
- EPSS 1.81%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:07:49
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers to execute arbitrary web script or HTML via the Subject field.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Webhost Automation ≫ Helm Control Panel Version3.1.10
Webhost Automation ≫ Helm Control Panel Version3.1.11
Webhost Automation ≫ Helm Control Panel Version3.1.12
Webhost Automation ≫ Helm Control Panel Version3.1.13
Webhost Automation ≫ Helm Control Panel Version3.1.14
Webhost Automation ≫ Helm Control Panel Version3.1.15
Webhost Automation ≫ Helm Control Panel Version3.1.16
Webhost Automation ≫ Helm Control Panel Version3.1.17
Webhost Automation ≫ Helm Control Panel Version3.1.18
Webhost Automation ≫ Helm Control Panel Version3.1.19
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.81% | 0.758 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://marc.info/?l=bugtraq&m=109943858026542&w=2
http://secunia.com/advisories/13079
http://www.hat-squad.com/en/000077.html
http://www.securityfocus.com/bid/11586
https://exchange.xforce.ibmcloud.com/vulnerabilities/17943