Vulnerabilities > CVE-2004-1210 - HTML Injection vulnerability in Ipcop 1.4.1
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Cross-site scripting (XSS) vulnerability in proxylog.dat in IPCop 1.4.1 and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via the (1) url or (2) part variables.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | IPCop 1.4.1 Web Administration Interface Proxy Log HTML Injection Vulnerability. CVE-2004-1210. Webapps exploits for multiple platform |
id | EDB-ID:24792 |
last seen | 2016-02-03 |
modified | 2004-11-30 |
published | 2004-11-30 |
reporter | Paul Kurczaba |
source | https://www.exploit-db.com/download/24792/ |
title | IPCop 1.4.1 Web Administration Interface Proxy Log HTML Injection Vulnerability |