CVE Vulnerabilities

CVE-2004-2261

Published: Dec 31, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cross-site scripting (XSS) vulnerability in e107 allows remote attackers to inject arbitrary script or HTML via the login name/author field in the (1) news submit or (2) article submit functions.

Affected Software

Name Vendor Start Version End Version
E107 E107 0.545 (including) 0.545 (including)
E107 E107 0.554 (including) 0.554 (including)
E107 E107 0.555_beta (including) 0.555_beta (including)
E107 E107 0.603 (including) 0.603 (including)
E107 E107 0.610 (including) 0.610 (including)
E107 E107 0.611 (including) 0.611 (including)
E107 E107 0.612 (including) 0.612 (including)
E107 E107 0.613 (including) 0.613 (including)
E107 E107 0.614 (including) 0.614 (including)

References