CVE-2004-1817: XSS
Cross-site scripting (XSS) vulnerability in modules.php in Php-Nuke 7.1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) Your Name field, (2) e-mail field, (3) nicname field, (4) fname parameter, (5) ratenum parameter, or (6) search field.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1817?
CVE-2004-1817 is classified as a medium severity cross-site scripting vulnerability.
How do I fix CVE-2004-1817?
To fix CVE-2004-1817, ensure that you update to a patched version of Php-Nuke that addresses this XSS vulnerability.
What systems are affected by CVE-2004-1817?
CVE-2004-1817 affects Php-Nuke version 7.1.0.
What attack vectors are associated with CVE-2004-1817?
CVE-2004-1817 allows attackers to exploit the vulnerability through fields such as Your Name, e-mail, nicname, fname, ratenum, or search.
What is the impact of CVE-2004-1817 on users?
The impact of CVE-2004-1817 lets attackers inject arbitrary web scripts or HTML, potentially leading to session hijacking or phishing attacks.