Vulnerabilities > CVE-2005-1803 - Unspecified vulnerability in NET Portal Dynamic System NET Portal Dynamic System 5.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN net-portal-dynamic-system
exploit available
Summary
Multiple cross-site scripting (XSS) vulnerabilities in Net Portal Dynamic System (NPDS) 5.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) admin.php, or (2) powerpack_f.php, (3) the sitename parameter to sdv_infos.php, (4) the categories parameter to faq.php, (5) the lettre parameter to the glossaire module, (6) the title parameter to reviews.php, or (7) the image_subject parameter to reply.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description NPDS 4.8 /5.0 reviews.php title Parameter XSS. CVE-2005-1803. Webapps exploit for php platform id EDB-ID:25746 last seen 2016-02-03 modified 2005-05-28 published 2005-05-28 reporter NoSP source https://www.exploit-db.com/download/25746/ title NPDS 4.8 /5.0 reviews.php title Parameter XSS description NPDS 4.8 /5.0 powerpack_f.php language Parameter XSS. CVE-2005-1803. Webapps exploit for php platform id EDB-ID:25743 last seen 2016-02-03 modified 2005-05-28 published 2005-05-28 reporter NoSP source https://www.exploit-db.com/download/25743/ title NPDS 4.8 /5.0 powerpack_f.php language Parameter XSS description NPDS 4.8 /5.0 admin.php language Parameter XSS. CVE-2005-1803. Webapps exploit for php platform id EDB-ID:25742 last seen 2016-02-03 modified 2005-05-28 published 2005-05-28 reporter NoSP source https://www.exploit-db.com/download/25742/ title NPDS 4.8 /5.0 admin.php language Parameter XSS description NPDS 4.8 /5.0 reply.php image_subject Parameter XSS. CVE-2005-1803. Webapps exploit for php platform id EDB-ID:25747 last seen 2016-02-03 modified 2005-05-28 published 2005-05-28 reporter NoSP source https://www.exploit-db.com/download/25747/ title NPDS 4.8 /5.0 reply.php image_subject Parameter XSS description NPDS 4.8 /5.0 faq.php categories Parameter XSS. CVE-2005-1803. Webapps exploit for php platform id EDB-ID:25750 last seen 2016-02-03 modified 2005-05-28 published 2005-05-28 reporter NoSP source https://www.exploit-db.com/download/25750/ title NPDS 4.8 /5.0 faq.php categories Parameter XSS