Lucene search

K
cveMitreCVE-2005-3506
HistoryNov 05, 2005 - 11:02 a.m.

CVE-2005-3506

2005-11-0511:02:00
mitre
web.nvd.nist.gov
25
cve-2005-3506
cross-site scripting
xss
sambar server
security vulnerability

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.2

Confidence

High

EPSS

0.002

Percentile

58.6%

Cross-site scripting (XSS) vulnerability in proxy.asp in Sambar Server 6.3 BETA 2 and possibly earlier versions allows remote attackers to inject arbitrary web script or HTML via the (1) Remote Proxy Server or (2) Proxy Filter IPs field.

Affected configurations

Nvd
Node
sambarsambar_serverRange6.3
OR
sambarsambar_serverMatch6.3beta2
VendorProductVersionCPE
sambarsambar_server*cpe:2.3:a:sambar:sambar_server:*:*:*:*:*:*:*:*
sambarsambar_server6.3cpe:2.3:a:sambar:sambar_server:6.3:beta2:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.2

Confidence

High

EPSS

0.002

Percentile

58.6%

Related for CVE-2005-3506