Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2003-12-31 | CVE-2003-1534 | Cross-Site Scripting vulnerability in Justice Media Guestbook Cross-site scripting (XSS) vulnerability in jgb.php3 in Justice Guestbook 1.3 allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) homepage, (3) aim, (4) yim, (5) location, and (6) comment variables. | 4.3 |
2003-12-31 | CVE-2003-1531 | Cross-Site Scripting vulnerability in Lilikoi Ceilidh Cross-site scripting (XSS) vulnerability in testcgi.exe in Lilikoi Software Ceilidh 2.70 and earlier allows remote attackers to inject arbitrary web script or HTML via the query string. | 4.3 |
2003-12-31 | CVE-2003-1522 | Cross-Site Scripting vulnerability in Pscs Vpop3 web Mail Server 2.0E/2.0F Cross-site scripting (XSS) vulnerability in PSCS VPOP3 Web Mail server 2.0e and 2.0f allows remote attackers to inject arbitrary web script or HTML via the redirect parameter to the admin/index.html page. | 4.3 |
2003-12-31 | CVE-2003-1519 | Cross-Site Scripting vulnerability in Vivisimo Clustering Engine 0 Cross-site scripting (XSS) vulnerability in Vivisimo clustering engine allows remote attackers to inject arbitrary web script or HTML via the query parameter to the search program. | 4.3 |
2003-12-31 | CVE-2003-1513 | Cross-Site Scripting vulnerability in Caucho Technology Resin Multiple cross-site scripting (XSS) vulnerabilities in example scripts in Caucho Technology Resin 2.0 through 2.1.2 allow remote attackers to inject arbitrary web script or HTML via (1) env.jsp, (2) form.jsp, (3) session.jsp, (4) the move parameter to tictactoe.jsp, or the (5) name or (6) comment fields to guestbook.jsp. | 4.3 |
2003-12-31 | CVE-2003-1511 | Cross-Site Scripting vulnerability in Bajie Java Http Server 0.95 Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inject arbitrary web script or HTML via (1) the query string to test.txt, (2) the guestName parameter to the custMsg servlet, or (3) the cookiename parameter to the CookieExample servlet. | 4.3 |
2003-12-31 | CVE-2003-1506 | Cross-Site Scripting vulnerability in Daniel Barron Dansguardian Cross-site scripting (XSS) vulnerability in dansguardian.pl in Adelix CensorNet 3.0 through 3.2 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into the DENIEDURL parameter. | 4.3 |
2003-12-31 | CVE-2003-1498 | Cross-Site Scripting vulnerability in Wrensoft Zoom Search Engine Cross-site scripting (XSS) vulnerability in search.php for WRENSOFT Zoom Search Engine 2.0 Build 1018 and earlier allows remote attackers to inject arbitrary web script or HTML via the zoom_query parameter. | 4.3 |
2003-12-31 | CVE-2003-1479 | Cross-Site Scripting vulnerability in Darkwet Webcam XP 1.02.432/1.02.535 Cross-site scripting (XSS) vulnerability in webcamXP 1.02.432 and 1.02.535 allows remote attackers to inject arbitrary web script or HTML via the message field. | 4.3 |
2003-12-31 | CVE-2003-1467 | Cross-Site Scripting vulnerability in Phorum Multiple cross-site scripting (XSS) vulnerabilities in (1) login.php, (2) register.php, (3) post.php, and (4) common.php in Phorum before 3.4.3 allow remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | 4.3 |