Cross-site scripting (XSS) vulnerability in the create list option in Sympa 4.1.x and earlier allows remote authenticated users to inject arbitrary web script or HTML via the description field.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=109312475207604&w=2 | |
http://secunia.com/advisories/12339 | Vendor Advisory |
http://www.securityfocus.com/bid/10992 | Exploit Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/17057 | |
http://marc.info/?l=bugtraq&m=109312475207604&w=2 | |
http://secunia.com/advisories/12339 | Vendor Advisory |
http://www.securityfocus.com/bid/10992 | Exploit Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/17057 |
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:51
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=109312475207604&w=2 - | |
References | () http://secunia.com/advisories/12339 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/10992 - Exploit, Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/17057 - |
Information
Published : 2004-08-21 04:00
Updated : 2024-11-20 23:51
NVD link : CVE-2004-1735
Mitre link : CVE-2004-1735
CVE.ORG link : CVE-2004-1735
JSON object : View
Products Affected
sympa
- sympa
CWE