4.3

CVE-2005-0509

Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for ASCII fullwidth characters that are converted to normal ASCII characters, including ">" and "<".

Data is provided by the National Vulnerability Database (NVD)
Microsoft.Net Framework Version1.0
Microsoft.Net Framework Version1.0 Updatesp1
Microsoft.Net Framework Version1.0 Updatesp2
Microsoft.Net Framework Version1.1
Microsoft.Net Framework Version1.1 Updatesp1
MonoMono Version1.0.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 8.19% 0.913
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N