Описание
** DISPUTED ** Multiple cross-site scripting (XSS) vulnerabilities in MilliScripts 1.4 redirect script allow remote attackers to inject arbitrary web script or HTML via the domainname parameter to register.php, and other unspecified vectors. NOTE: the vendor has disputed this issue, stating "No invalid input can reach the script."
** DISPUTED ** Multiple cross-site scripting (XSS) vulnerabilities in MilliScripts 1.4 redirect script allow remote attackers to inject arbitrary web script or HTML via the domainname parameter to register.php, and other unspecified vectors. NOTE: the vendor has disputed this issue, stating "No invalid input can reach the script."
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2005-4161
- http://secunia.com/advisories/17997
- http://securityreason.com/securityalert/245
- http://www.securityfocus.com/archive/1/419070/100/0/threaded
- http://www.securityfocus.com/archive/1/433545/30/5070/threaded
- http://www.securityfocus.com/bid/15792
- http://www.vupen.com/english/advisories/2005/2839
Связанные уязвимости
Multiple cross-site scripting (XSS) vulnerabilities in MilliScripts 1.4 redirect script allow remote attackers to inject arbitrary web script or HTML via the domainname parameter to register.php, and other unspecified vectors. NOTE: the vendor has disputed this issue, stating "No invalid input can reach the script.