Lucene search

K
cve[email protected]CVE-2004-2288
HistoryOct 03, 2022 - 4:14 p.m.

CVE-2004-2288

2022-10-0316:14:14
web.nvd.nist.gov
26
vulnerability
xss
jelsoft vbulletin
index.php
remote attackers
website spoofing

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

6.1 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.3%

Cross-site scripting (XSS) vulnerability in index.php in Jelsoft vBulletin allows remote attackers to spoof parts of a website via the loc parameter.

Affected configurations

NVD
Node
jelsoftvbulletinMatch1.0.1lite
OR
jelsoftvbulletinMatch2.0.3
OR
jelsoftvbulletinMatch2.0_rc2
OR
jelsoftvbulletinMatch2.0_rc3
OR
jelsoftvbulletinMatch2.2.0
OR
jelsoftvbulletinMatch2.2.1
OR
jelsoftvbulletinMatch2.2.2
OR
jelsoftvbulletinMatch2.2.3
OR
jelsoftvbulletinMatch2.2.4
OR
jelsoftvbulletinMatch2.2.5
OR
jelsoftvbulletinMatch2.2.6
OR
jelsoftvbulletinMatch2.2.7
OR
jelsoftvbulletinMatch2.2.8
OR
jelsoftvbulletinMatch2.2.9
OR
jelsoftvbulletinMatch2.3.0
OR
jelsoftvbulletinMatch2.3.2
OR
jelsoftvbulletinMatch2.3.3
OR
jelsoftvbulletinMatch2.3.4
OR
jelsoftvbulletinMatch3.0_beta_2
OR
jelsoftvbulletinMatch3.0_beta_3
OR
jelsoftvbulletinMatch3.0_beta_4
OR
jelsoftvbulletinMatch3.0_beta_5
OR
jelsoftvbulletinMatch3.0_beta_6
OR
jelsoftvbulletinMatch3.0_beta_7
OR
jelsoftvbulletinMatch3.0_gamma

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

6.1 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.3%

Related for CVE-2004-2288