4.3
CVE-2005-0509
- EPSS 15.95%
- Veröffentlicht 14.03.2005 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:11:16
- Erkennungen
Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for ASCII fullwidth characters that are converted to normal ASCII characters, including ">" and "<".
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ .Net Framework Version 1.0
Microsoft ≫ .Net Framework Version 1.0 Update sp1
Microsoft ≫ .Net Framework Version 1.0 Update sp2
Microsoft ≫ .Net Framework Version 1.1
Microsoft ≫ .Net Framework Version 1.1 Update sp1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 15.95% | 0.965 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://it-project.ru/andir/docs/aspxvuln/aspxvuln.en.xml
http://marc.info/?l=bugtraq&m=110867912714913&w=2
http://secunia.com/advisories/14325