Vulnerabilities > CVE-2004-1746 - Unspecified vulnerability in PHP Code Snippet Library PHP Code Snippet Library 0.8
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Cross-site scripting (XSS) vulnerability in index.php in PHP Code Snippet Library allows remote attackers to inject arbitrary web script or HTML via the (1) cat_select or (2) show parameters.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | PHP Code Snippet Library 0.8 Multiple Cross-Site Scripting Vulnerabilities. CVE-2004-1746. Webapps exploit for php platform |
id | EDB-ID:24410 |
last seen | 2016-02-02 |
modified | 2004-08-24 |
published | 2004-08-24 |
reporter | Nikyt0x Argentina |
source | https://www.exploit-db.com/download/24410/ |
title | PHP Code Snippet Library 0.8 - Multiple Cross-Site Scripting Vulnerabilities |
Nessus
NASL family | CGI abuses : XSS |
NASL id | PHPCSL_XSS.NASL |
description | The remote host is running PHP Code Snippet Library (PHP-CSL), a library written in PHP. The remote version of this software fails to sanitize input to the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 14368 |
published | 2004-08-25 |
reporter | This script is Copyright (C) 2004-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/14368 |
title | PHP Code Snippet Library index.php Multiple Parameter XSS |
code |
|
References
- http://marc.info/?l=bugtraq&m=109340580218818&w=2
- http://marc.info/?l=bugtraq&m=109340580218818&w=2
- http://nikyt0x.webcindario.com/0001.txt
- http://nikyt0x.webcindario.com/0001.txt
- http://secunia.com/advisories/12370
- http://secunia.com/advisories/12370
- http://www.securityfocus.com/bid/11038
- http://www.securityfocus.com/bid/11038
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17108
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17108