Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2003-1204
Description:Multiple cross-site scripting (XSS) vulnerabilities in Mambo Site Server 4.0.12 BETA and earlier allow remote attackers to execute script on other clients via (1) the link parameter in sectionswindow.php, the directory parameter in (2) gallery.php, (3) navigation.php, or (4) uploadimage.php, the path parameter in (5) view.php, (6) the choice parameter in upload.php, (7) the sitename parameter in mambosimple.php, (8) the type parameter in upload.php, or the id parameter in (9) emailarticle.php, (10) emailfaq.php, or (11) emailnews.php.
Test IDs: 1.3.6.1.4.1.25623.1.0.16315  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2003-1204
BugTraq ID: 6571
http://www.securityfocus.com/bid/6571
Bugtraq: 20030110 Mambo Site Server Remote Code Execution (Google Search)
http://www.securityfocus.com/archive/1/306206
http://www.osvdb.org/7495
http://www.osvdb.org/7496
http://www.osvdb.org/7497
http://www.osvdb.org/7498
http://www.osvdb.org/7499
http://www.osvdb.org/7500
http://www.osvdb.org/7501
http://www.osvdb.org/7502
http://www.osvdb.org/7503
http://www.osvdb.org/7504
http://www.osvdb.org/7505
XForce ISS Database: mambo-multiple-scripts-xss(11050)
https://exchange.xforce.ibmcloud.com/vulnerabilities/11050




© 1998-2025 E-Soft Inc. All rights reserved.