CVE-2004-1818: XSS
Cross-site scripting (XSS) vulnerability in nmimage.php in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to execute arbitrary script as other users by injecting arbitrary script into the z parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1818?
CVE-2004-1818 is considered a medium-severity cross-site scripting (XSS) vulnerability.
How do I fix CVE-2004-1818?
To fix CVE-2004-1818, upgrade 4nalbum to the latest version that addresses this vulnerability.
What are the potential impacts of CVE-2004-1818?
The potential impacts of CVE-2004-1818 include unauthorized script execution that could lead to session hijacking or other malicious actions.
Who is affected by CVE-2004-1818?
Users of the 4nalbum module version 0.92 for PHP-Nuke between versions 6.5 and 7.0 are affected by CVE-2004-1818.
Can CVE-2004-1818 be exploited remotely?
Yes, CVE-2004-1818 can be exploited remotely by attackers injecting malicious scripts through the vulnerable parameter.