Vulnerabilities > CVE-2004-1397 - Cross-Site Scripting vulnerability in UseModWiki Wiki.PL

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
usemod
nessus

Summary

Cross-site scripting (XSS) vulnerability in UseModWiki 1.0 allows remote attackers to inject arbitrary web script or HTML via an argument to wiki.pl.

Vulnerable Configurations

Part Description Count
Application
Usemod
1

Nessus

NASL familyCGI abuses : XSS
NASL idUSEMODWIKI_XSS.NASL
descriptionThe remote host is using UseModWiki, a wiki CGI written in Perl. The CGI
last seen2020-06-01
modified2020-06-02
plugin id15967
published2004-12-14
reporterThis script is Copyright (C) 2004-2018 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/15967
titleUseModWiki wiki.pl XSS