CVE Vulnerabilities

CVE-2004-2015

Published: Dec 31, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cross-site scripting (XSS) vulnerability in WebCT Campus Edition allows remote attackers to inject arbitrary HTML or web script via (1) iframe, (2) img, or (3) object tags.

Affected Software

Name Vendor Start Version End Version
Webct Webct campus_4.1_sp2_hotfix_40832 campus_4.1_sp2_hotfix_40832
Webct Webct campus_4.0_sp3_hotfix_40833 campus_4.0_sp3_hotfix_40833
Webct Webct campus_4.1 campus_4.1
Webct Webct campus_4.1.1.5 campus_4.1.1.5
Webct Webct campus_4.0 campus_4.0

References