First published: Fri Dec 31 2004(Updated: )
Cross-site scripting (XSS) vulnerability in the (1) email or (2) file modules in paFileDB 3.1 Final allows remote attackers to execute arbitrary web script or HTML via the id parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Php Arena Pabugs | =3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-1551 has a medium severity level due to its potential for exploitation via cross-site scripting.
To fix CVE-2004-1551, upgrade to a patched version of paFileDB that addresses the XSS vulnerability.
The potential impacts of CVE-2004-1551 include unauthorized execution of scripts which can lead to data theft or phishing attacks.
Users of paFileDB version 3.1 are affected by CVE-2004-1551 and are at risk of XSS attacks.
The email and file modules of paFileDB are the components vulnerable to CVE-2004-1551.