Cross-site scripting (XSS) vulnerability in Starphire SiteSage 5.0.18 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the norelay_highlight_words parameter.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2005-12-22 11:03
Updated : 2024-02-28 10:42
NVD link : CVE-2005-4492
Mitre link : CVE-2005-4492
CVE.ORG link : CVE-2005-4492
JSON object : View
Products Affected
starphire_technologies
- sitesage-sb
- sitesage-se
- sitesage
- sitesage-le
- sitesage-ee
CWE