Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-0310

Опубликовано: 23 нояб. 2004
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in LiveJournal 1.0 and 1.1 allows remote attackers to execute Javascript as other users via the stylesheet, which does not strip the semicolon or parentheses, as demonstrated using a background:url.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:livejournal:livejournal:*:*:*:*:*:*:*:*

EPSS

Процентиль: 74%
0.00828
Низкий

6.8 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in LiveJournal 1.0 and 1.1 allows remote attackers to execute Javascript as other users via the stylesheet, which does not strip the semicolon or parentheses, as demonstrated using a background:url.

EPSS

Процентиль: 74%
0.00828
Низкий

6.8 Medium

CVSS2

Дефекты

NVD-CWE-Other