CVE-2004-1062: XSS
Published Dec 28, 2004
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in ViewCVS 0.9.2 allow remote attackers to inject arbitrary HTML and web script via certain error messages.
Affected Software
1 affected component
ViewCVS ViewCVS=0.9.2
Remediation
Patch Available
Event History
Dec 28, 2004
CVE Published
05:00 AM
Dec 31, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1062?
CVE-2004-1062 is classified as a moderate severity vulnerability that allows for cross-site scripting (XSS) attacks.
2
How do I fix CVE-2004-1062?
To fix CVE-2004-1062, upgrade to a patched version of ViewCVS that resolves the XSS vulnerabilities.
3
What software is affected by CVE-2004-1062?
CVE-2004-1062 specifically affects ViewCVS version 0.9.2.
4
What kind of attacks can be performed using CVE-2004-1062?
CVE-2004-1062 allows attackers to inject arbitrary HTML and web scripts, leading to potential XSS attacks.
5
Who can exploit CVE-2004-1062?
Remote attackers can exploit CVE-2004-1062 by injecting malicious scripts through certain error messages.