Vulnerabilities > CVE-2005-2427 - Unspecified vulnerability in Elemental Software Cartwiz
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Cross-site scripting (XSS) vulnerability in viewCart.asp in CartWIZ allows remote attackers to inject arbitrary web script or HTML via the message parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://marc.info/?l=bugtraq&m=112240525414263&w=2
- http://marc.info/?l=bugtraq&m=112240525414263&w=2
- http://securitytracker.com/id?1014581
- http://securitytracker.com/id?1014581
- http://www.osvdb.org/18463
- http://www.osvdb.org/18463
- http://www.securityfocus.com/bid/14386
- http://www.securityfocus.com/bid/14386
- https://exchange.xforce.ibmcloud.com/vulnerabilities/21554
- https://exchange.xforce.ibmcloud.com/vulnerabilities/21554