Lucene search

K
cveMitreCVE-2005-1285
HistoryApr 26, 2005 - 4:00 a.m.

CVE-2005-1285

2005-04-2604:00:00
mitre
web.nvd.nist.gov
30
cve-2005-1285
xss
vulnerability
thread.php
woltlab burning board 2.3.1
nvd

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6

Confidence

High

EPSS

0.007

Percentile

80.4%

Cross-site scripting (XSS) vulnerability in thread.php in WoltLab Burning Board 2.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the hilight parameter.

Affected configurations

Nvd
Node
woltlabburning_boardRange2.3.1
VendorProductVersionCPE
woltlabburning_board*cpe:2.3:a:woltlab:burning_board:*:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6

Confidence

High

EPSS

0.007

Percentile

80.4%

Related for CVE-2005-1285