Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2002-0217
Description:Cross-site scripting (CSS) vulnerabilities in the Private Message System for XOOPS 1.0 RC1 allow remote attackers to execute Javascript on other web clients via (1) the Title field or a Private Message Box or (2) the image field parameter in pmlite.php.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2002-0217
BugTraq ID: 3978
http://www.securityfocus.com/bid/3978
BugTraq ID: 3981
http://www.securityfocus.com/bid/3981
Bugtraq: 20020129 Xoops Private Message System Script injection (Google Search)
http://online.securityfocus.com/archive/1/252828
XForce ISS Database: xoops-pmlite-image-css(8030)
http://www.iss.net/security_center/static/8030.php
XForce ISS Database: xoops-private-message-css(8025)
http://www.iss.net/security_center/static/8025.php




© 1998-2025 E-Soft Inc. All rights reserved.