Lucene search

K
cvelistMitreCVELIST:CVE-2005-1638
HistoryMay 17, 2005 - 4:00 a.m.

CVE-2005-1638

2005-05-1704:00:00
mitre
www.cve.org
2
safehtml
cross-site scripting
remote attackers
attribute values

AI Score

6

Confidence

High

EPSS

0.002

Percentile

60.8%

The _writeAttrs function in SafeHTML before 1.3.2 does not properly handle quotes in attribute values, which could allow remote attackers to exploit cross-site scripting (XSS) vulnerabilities in applications that rely on SafeHTML for protection.

AI Score

6

Confidence

High

EPSS

0.002

Percentile

60.8%

Related for CVELIST:CVE-2005-1638