CVE Vulnerabilities

CVE-2005-0509

Published: Mar 14, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for ASCII fullwidth characters that are converted to normal ASCII characters, including > and <.

Affected Software

NameVendorStart VersionEnd Version
.net_frameworkMicrosoft1.0 (including)1.0 (including)
.net_frameworkMicrosoft1.0-sp1 (including)1.0-sp1 (including)
.net_frameworkMicrosoft1.0-sp2 (including)1.0-sp2 (including)
.net_frameworkMicrosoft1.1 (including)1.1 (including)
.net_frameworkMicrosoft1.1-sp1 (including)1.1-sp1 (including)
MonoMono1.0.5 (including)1.0.5 (including)

References