CVE-2004-2261: XSS
Cross-site scripting (XSS) vulnerability in e107 allows remote attackers to inject arbitrary script or HTML via the "login name/author" field in the (1) news submit or (2) article submit functions.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-2261?
CVE-2004-2261 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2004-2261?
To fix CVE-2004-2261, users should upgrade to a patched version of e107 CMS that addresses the cross-site scripting vulnerability.
Which versions of e107 CMS are affected by CVE-2004-2261?
CVE-2004-2261 affects e107 CMS versions 0.545 through 0.614, excluding any mentioned secure releases.
What type of vulnerability is CVE-2004-2261?
CVE-2004-2261 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary scripts.
Can CVE-2004-2261 be exploited remotely?
Yes, CVE-2004-2261 can be exploited remotely, allowing attackers to execute scripts through exploitative input methods.