Vulnerabilities > CVE-2005-2324 - Unspecified vulnerability in Clever Copy Clever Copy 2.0/2.0A
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web script or HTML via the searchtype or searchterm parameters to (1) results.php or (2) categorysearch.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description Clever Copy 2.0 results.php Multiple Parameter XSS. CVE-2005-2324. Webapps exploit for php platform id EDB-ID:26037 last seen 2016-02-03 modified 2005-07-27 published 2005-07-27 reporter Lostmon source https://www.exploit-db.com/download/26037/ title Clever Copy 2.0 results.php Multiple Parameter XSS description Clever Copy 2.0 categorysearch.php Multiple Parameter XSS. CVE-2005-2324 . Webapps exploit for php platform id EDB-ID:26038 last seen 2016-02-03 modified 2005-07-27 published 2005-07-27 reporter Lostmon source https://www.exploit-db.com/download/26038/ title Clever Copy 2.0 categorysearch.php Multiple Parameter XSS
Nessus
NASL family | CGI abuses |
NASL id | CLEVERCOPY_PATH_DISCLOSURE_XSS.NASL |
description | The remote host is running Clever Copy, a free, fully-scalable web site portal and news posting system written in PHP The remote version of this software contains multiple vulnerabilities that can lead to path disclosure, cross-site scripting and unauthorized access to private messages. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 19392 |
published | 2005-08-07 |
reporter | Copyright (C) 2005-2018 Josh Zlatin-Amishav |
source | https://www.tenable.com/plugins/nessus/19392 |
title | Clever Copy Multiple Vulnerabilities (XSS, Path Disc, Inf Disc) |
code |
|