Vulnerabilities > CVE-2005-3849 - Cross-Site Scripting vulnerability in PmWiki Search

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
pmwiki
exploit available

Summary

Cross-site scripting (XSS) vulnerability in the Search module in PmWiki up to 2.0.12 allows remote attackers to inject arbitrary web script or HTML via the q parameter.

Exploit-Db

descriptionPmWiki 2.0.x Search Cross-Site Scripting Vulnerability. CVE-2005-3849. Webapps exploit for php platform
idEDB-ID:26560
last seen2016-02-03
modified2005-11-22
published2005-11-22
reporterMoritz Naumann
sourcehttps://www.exploit-db.com/download/26560/
titlePmWiki 2.0.x Search Cross-Site Scripting Vulnerability