Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-1640
Description:Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 0.94 and 1.0 allow remote attackers to execute arbitrary web script and HTML via the (1) terme parameter to search.php or (2) letter parameter to letter.php.
Test IDs: 1.3.6.1.4.1.25623.1.0.14614  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-1640
BugTraq ID: 11064
http://www.securityfocus.com/bid/11064
Bugtraq: 20040828 Cross Site Scripting in XOOPS Version 2.x Dictionary module (Google Search)
http://marc.info/?l=bugtraq&m=109394077209963&w=2
http://cyruxnet.org/modulo_dic_xoops.htm
http://www.osvdb.org/9393
http://www.osvdb.org/9394
http://secunia.com/advisories/12424
XForce ISS Database: xoops-dictionary-letter-xss(17154)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17154
XForce ISS Database: xoops-dictionary-search-xss(17152)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17152




© 1998-2025 E-Soft Inc. All rights reserved.