Vulnerabilities > CVE-2005-2780 - HTML Injection vulnerability in Neocrome Land Down Under 800

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
neocrome
nessus

Summary

Cross-site scripting (XSS) vulnerability in Land Down Under (LDU) allows remote attackers to inject arbitrary web script or HTML via a signature.

Vulnerable Configurations

Part Description Count
Application
Neocrome
1

Nessus

NASL familyCGI abuses
NASL idLDU_SQL_INJECTION.NASL
descriptionThe remote version of Land Down Under is prone to various SQL injection and cross-site scripting attacks provided PHP
last seen2020-06-01
modified2020-06-02
plugin id19678
published2005-09-06
reporterCopyright (C) 2005-2018 Josh Zlatin-Amishav
sourcehttps://www.tenable.com/plugins/nessus/19678
titleLand Down Under <= 800 Multiple Vulnerabilities