Vulnerabilities > CVE-2004-2245 - Unspecified vulnerability in Goollery 0.3
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Cross-site scripting (XSS) vulnerability in Goollery 0.03 allows remote attackers to inject arbitrary HTML or web script via the (1) page parameter to viewalbum.php or (2) btopage parameter to viewpic.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Goolery 0.3 viewalbum.php page Parameter XSS. CVE-2004-2245. Webapps exploit for php platform |
id | EDB-ID:24719 |
last seen | 2016-02-02 |
modified | 2004-11-02 |
published | 2004-11-02 |
reporter | Lostmon |
source | https://www.exploit-db.com/download/24719/ |
title | Goolery 0.3 viewalbum.php page Parameter XSS |
Nessus
NASL family | CGI abuses |
NASL id | GOOLLERY_XSS.NASL |
description | According to its self-reported version number, the instance of Goollery running on the remote host is affected by multiple cross-site scripting (XSS) vulnerabilities in the viewpic.php script. An unauthenticated, remote attacker can exploit these vulnerabilities, via a specially crafted request, to execute arbitrary script code in a user |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 15717 |
published | 2004-11-13 |
reporter | This script is Copyright (C) 2004-2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/15717 |
title | Goollery < 0.04b Multiple Vulnerabilities |
code |
|
References
- http://securitytracker.com/id?1012062
- http://securitytracker.com/id?1012062
- http://www.osvdb.org/11318
- http://www.osvdb.org/11318
- http://www.osvdb.org/11319
- http://www.osvdb.org/11319
- http://www.osvdb.org/11320
- http://www.osvdb.org/11320
- http://www.osvdb.org/ref/11/11xxx-goollery_multiple.txt
- http://www.osvdb.org/ref/11/11xxx-goollery_multiple.txt
- http://www.securityfocus.com/bid/11587
- http://www.securityfocus.com/bid/11587
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17957
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17957