Vulnerabilities > CVE-2005-4574 - Unspecified vulnerability in Paperthin Commonspot Content Server
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Cross-site scripting (XSS) vulnerability in loader.cfm in PaperThin CommonSpot Content Server 4.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the bNewWindow parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 5 |
Exploit-Db
description | PaperThin CommonSpot Content Server 4.5 Cross-Site Scripting Vulnerability. CVE-2005-4574. Webapps exploit for cfm platform |
id | EDB-ID:26986 |
last seen | 2016-02-03 |
modified | 2005-12-23 |
published | 2005-12-23 |
reporter | r0t3d3Vil |
source | https://www.exploit-db.com/download/26986/ |
title | PaperThin CommonSpot Content Server 4.5 - Cross-Site Scripting Vulnerability |
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-1201.NASL |
description | Several remote vulnerabilities have been discovered in the Ethereal network scanner. The Common Vulnerabilities and Exposures project identifies the following problems : - CVE-2005-4574 It was discovered that the MIME multipart dissector is vulnerable to denial of service caused by an off-by-one overflow. - CVE-2006-4805 It was discovered that the XOT dissector is vulnerable to denial of service caused by memory corruption. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 22931 |
published | 2006-11-01 |
reporter | This script is Copyright (C) 2006-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/22931 |
title | Debian DSA-1201-1 : ethereal - several vulnerabilities |
code |
|
References
- http://pridels0.blogspot.com/2005/12/commonspot-content-server-vuln.html
- http://pridels0.blogspot.com/2005/12/commonspot-content-server-vuln.html
- http://secunia.com/advisories/18257
- http://secunia.com/advisories/18257
- http://www.osvdb.org/21931
- http://www.osvdb.org/21931
- http://www.securityfocus.com/bid/16071
- http://www.securityfocus.com/bid/16071
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23864
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23864