Vulnerabilities > CVE-2005-0945 - Unspecified vulnerability in ASP Press ACS Blog 1.1.1

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
asp-press
exploit available

Summary

Cross-site scripting (XSS) vulnerability in ACS Blog 1.1.1 allows remote attackers to inject arbitrary web script or HTML via onmouseover or onload events in (1) img, (2) link, or (3) mail tags.

Vulnerable Configurations

Part Description Count
Application
Asp_Press
1

Exploit-Db

descriptionACS Blog 0.8/0.9/1.0/1.1 Name Field HTML Injection Vulnerability. CVE-2005-0945. Webapps exploit for asp platform
idEDB-ID:25313
last seen2016-02-03
modified2005-03-28
published2005-03-28
reporterDan Crowley
sourcehttps://www.exploit-db.com/download/25313/
titleACS Blog 0.8/0.9/1.0/1.1 Name Field HTML Injection Vulnerability