Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-0248

Опубликовано: 23 нояб. 2004
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into (1) keywords argument of main.inc.php, (2) body argument of help.inc.php, or (3) the subject field in Personal Messages and Forum.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpx:phpx:3.2.3:*:*:*:*:*:*:*

EPSS

Процентиль: 79%
0.01261
Низкий

6.8 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into (1) keywords argument of main.inc.php, (2) body argument of help.inc.php, or (3) the subject field in Personal Messages and Forum.

EPSS

Процентиль: 79%
0.01261
Низкий

6.8 Medium

CVSS2

Дефекты

NVD-CWE-Other