Vulnerabilities > CVE-2005-2488 - Unspecified vulnerability in web Content Management web Content Management News System

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
web-content-management
exploit available

Summary

Cross-site scripting (XSS) vulnerability in Web Content Management News System allows remote attackers to inject arbitrary web script or HTML via (1) the strRootpath parameter to validsession.php or (2) the strTable parameter to Admin/News/List.php.

Vulnerable Configurations

Part Description Count
Application
Web_Content_Management
1

Exploit-Db

descriptionWeb Content Management List.php strTable Parameter XSS. CVE-2005-2488. Webapps exploit for php platform
idEDB-ID:26068
last seen2016-02-03
modified2005-08-03
published2005-08-03
reporterrgod
sourcehttps://www.exploit-db.com/download/26068/
titleWeb Content Management List.php strTable Parameter XSS