Lucene search

K
cveMitreCVE-2005-3514
HistoryNov 06, 2005 - 11:02 a.m.

CVE-2005-3514

2005-11-0611:02:00
mitre
web.nvd.nist.gov
23
cve-2005-3514
chipmunk forum
xss
vulnerabilities
web script
html
newtopic.php
quote.php
index.php
reply.php

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.8

Confidence

High

EPSS

0.01

Percentile

83.6%

Multiple cross-site scripting (XSS) vulnerabilities in Chipmunk Forum script allow remote attackers to inject arbitrary web script or HTML via the forumID parameter to (1) newtopic.php, (2) quote.php, (3) index.php, and (4) reply.php.

Affected configurations

Nvd
Node
chipmunk_scriptschipmunk_forum
VendorProductVersionCPE
chipmunk_scriptschipmunk_forum*cpe:2.3:a:chipmunk_scripts:chipmunk_forum:*:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.8

Confidence

High

EPSS

0.01

Percentile

83.6%

Related for CVE-2005-3514