4.3
CVE-2005-1561
- EPSS 3.96%
- Veröffentlicht 11.05.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:13:16
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple cross-site scripting (XSS) vulnerabilities in post.asp in MaxWebPortal 1.3.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) mod, (2) M, or (3) type parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Maxwebportal ≫ Maxwebportal Version1.3.0
Maxwebportal ≫ Maxwebportal Version1.3.1
Maxwebportal ≫ Maxwebportal Version1.3.2
Maxwebportal ≫ Maxwebportal Version1.3.3
Maxwebportal ≫ Maxwebportal Version1.3.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.96% | 0.891 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://marc.info/?l=bugtraq&m=111584883727605&w=2
http://secunia.com/advisories/15329
http://www.hackerscenter.com/archive/view.asp?id=2542
http://www.osvdb.org/16501
http://www.securityfocus.com/bid/13601
https://exchange.xforce.ibmcloud.com/vulnerabilities/20560