Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2003-12-31 CVE-2003-1498 Cross-Site Scripting vulnerability in Wrensoft Zoom Search Engine
Cross-site scripting (XSS) vulnerability in search.php for WRENSOFT Zoom Search Engine 2.0 Build 1018 and earlier allows remote attackers to inject arbitrary web script or HTML via the zoom_query parameter.
network
wrensoft CWE-79
4.3
2003-12-31 CVE-2003-1479 Cross-Site Scripting vulnerability in Darkwet Webcam XP 1.02.432/1.02.535
Cross-site scripting (XSS) vulnerability in webcamXP 1.02.432 and 1.02.535 allows remote attackers to inject arbitrary web script or HTML via the message field.
network
darkwet CWE-79
4.3
2003-12-31 CVE-2003-1467 Cross-Site Scripting vulnerability in Phorum
Multiple cross-site scripting (XSS) vulnerabilities in (1) login.php, (2) register.php, (3) post.php, and (4) common.php in Phorum before 3.4.3 allow remote attackers to inject arbitrary web script or HTML via unknown attack vectors.
4.3
2003-12-31 CVE-2003-1453 Cross-Site Scripting vulnerability in Xoops
Cross-site scripting (XSS) vulnerability in the MytextSanitizer function in XOOPS 1.3.5 through 1.3.9 and XOOPS 2.0 through 2.0.1 allows remote attackers to inject arbitrary web script or HTML via a javascript: URL in an IMG tag.
network
xoops CWE-79
4.3
2003-12-31 CVE-2003-1420 Cross-site Scripting vulnerability in Opera Browser
Cross-site scripting (XSS) vulnerability in Opera 6.0 through 7.0 with automatic redirection disabled allows remote attackers to inject arbitrary web script or HTML via the HTTP Location header.
network
opera CWE-79
4.3
2003-12-31 CVE-2003-1400 Cross-Site Scripting vulnerability in Francisco Burzi PHP-Nuke
Cross-site scripting (XSS) vulnerability in the Your_Account module for PHP-Nuke 5.0 through 6.0 allows remote attackers to inject arbitrary web script or HTML via the user_avatar parameter.
4.3
2003-12-31 CVE-2003-1384 Cross-Site Scripting vulnerability in PY Software Py-Livredor 1.0
Cross-site scripting (XSS) vulnerability in index.php in PY-Livredor 1.0 allows remote attackers to insert arbitrary web script or HTML via the (1) titre, (2) Votre pseudo, (3) Votre e-mail, or (4) Votre message fields.
4.3
2003-12-31 CVE-2003-1372 Cross-Site Scripting vulnerability in Myphpnuke 1.8.8
Cross-site scripting (XSS) vulnerability in links.php script in myPHPNuke 1.8.8, and possibly earlier versions, allows remote attackers to inject arbitrary HTML and web script via the (1) ratenum or (2) query parameters.
4.3
2003-12-31 CVE-2003-1371 Cross-Site Scripting vulnerability in Nuked-Klan 1.3Beta
Nuked-Klan 1.3b, and possibly earlier versions, allows remote attackers to obtain sensitive server information via an op parameter set to phpinfo for the (1) Team, (2) News, or (3) Liens modules.
network
nuked-klan CWE-79
4.3
2003-12-31 CVE-2003-1370 Cross-Site Scripting vulnerability in Nuked-Klan 1.2Beta
Multiple cross-site scripting (XSS) vulnerabilities in Nuked-Klan 1.2b allow remote attackers to inject arbitrary HTML or web script via (1) the Author field in the Guestbook module, (2) the Titre or Pseudo fields in the Forum module, or (3) "La Tribune Libre" in the Shoutbox module.
network
nuked-klan CWE-79
4.3