Lucene search

K
nvd[email protected]NVD:CVE-2005-3506
HistoryNov 05, 2005 - 11:02 a.m.

CVE-2005-3506

2005-11-0511:02:00
web.nvd.nist.gov

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.9

Confidence

High

EPSS

0.002

Percentile

58.6%

Cross-site scripting (XSS) vulnerability in proxy.asp in Sambar Server 6.3 BETA 2 and possibly earlier versions allows remote attackers to inject arbitrary web script or HTML via the (1) Remote Proxy Server or (2) Proxy Filter IPs field.

Affected configurations

Nvd
Node
sambarsambar_serverRange6.3
OR
sambarsambar_serverMatch6.3beta2
VendorProductVersionCPE
sambarsambar_server*cpe:2.3:a:sambar:sambar_server:*:*:*:*:*:*:*:*
sambarsambar_server6.3cpe:2.3:a:sambar:sambar_server:6.3:beta2:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.9

Confidence

High

EPSS

0.002

Percentile

58.6%

Related for NVD:CVE-2005-3506