Multiple cross-site scripting (XSS) vulnerabilities in YaCy before 0.32 allow remote attackers to inject arbitrary web script or HTML via the (1) urlmaskfilter parameter to index.html or the (2) page parameter to Wiki.html.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:53
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2004-12/0413.html - Exploit, Vendor Advisory | |
References | () http://securitytracker.com/id?1012686 - Exploit, Patch | |
References | () http://www.osvdb.org/12629 - | |
References | () http://www.osvdb.org/12630 - Exploit, Patch | |
References | () http://www.securityfocus.com/bid/12104 - Exploit | |
References | () http://www.yacy.net/yacy/News.html - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/18688 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/18690 - |
Information
Published : 2004-12-31 05:00
Updated : 2024-11-20 23:53
NVD link : CVE-2004-2651
Mitre link : CVE-2004-2651
CVE.ORG link : CVE-2004-2651
JSON object : View
Products Affected
michael_christen
- yacy
CWE