Vulnerabilities > CVE-2005-3530 - Cross-Site Scripting vulnerability in Antville 1.1
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
NONE Integrity impact
PARTIAL Availability impact
NONE network
antville
Summary
Cross-site scripting (XSS) vulnerability in Antville 1.1 allows remote attackers to inject arbitrary web script or HTML via the notfound.skin error document.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Packetstorm
data source | https://packetstormsecurity.com/files/download/41441/0004.txt |
id | PACKETSTORM:41441 |
last seen | 2016-12-05 |
published | 2005-11-10 |
reporter | moritz-naumann.com |
source | https://packetstormsecurity.com/files/41441/0004.txt.html |
title | 0004.txt |
References
- http://marc.info/?l=bugtraq&m=113156739212557&w=2
- http://moritz-naumann.com/adv/0004/antvxss/0004.txt
- http://secunia.com/advisories/17520/
- http://securityreason.com/securityalert/166
- http://www.osvdb.org/20709
- http://www.securityfocus.com/bid/15372
- http://www.vupen.com/english/advisories/2005/2377
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23032