Vulnerabilities > CVE-2005-1233 - Cross-Site Scripting vulnerability in PHP Labs proFile Dir URI Variable

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
php-labs
exploit available

Summary

Cross-site scripting (XSS) vulnerability in index.php in PHP Labs proFile allows remote attackers to inject arbitrary web script or HTML via the (1) dir or (2) file parameters.

Vulnerable Configurations

Part Description Count
Application
Php_Labs
1

Exploit-Db

  • descriptionPHP Labs proFile Dir URI Variable Cross-Site Scripting Vulnerability. CVE-2005-1233. Webapps exploit for php platform
    idEDB-ID:25468
    last seen2016-02-03
    modified2005-04-20
    published2005-04-20
    reportersNKenjoi
    sourcehttps://www.exploit-db.com/download/25468/
    titlePHP Labs proFile Dir URI Variable Cross-Site Scripting Vulnerability
  • descriptionPHP Labs proFile File URI Variable Cross-Site Scripting Vulnerability. CVE-2005-1233. Webapps exploit for php platform
    idEDB-ID:25473
    last seen2016-02-03
    modified2005-04-20
    published2005-04-20
    reportersNKenjoi
    sourcehttps://www.exploit-db.com/download/25473/
    titlePHP Labs proFile File URI Variable Cross-Site Scripting Vulnerability