CVE-2004-2332: XSS
Published Dec 31, 2004
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in CPAN WWW::Form before 1.13 allow remote attackers to inject arbitrary web script or HTML via unknown vectors.
Affected Software
1 affected component
CPAN Www Form=1.12
Remediation
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Aug 16, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2332?
CVE-2004-2332 is classified as a medium severity vulnerability due to the potential for cross-site scripting attacks.
2
How do I fix CVE-2004-2332?
To fix CVE-2004-2332, upgrade to a version of CPAN WWW::Form that is 1.13 or later.
3
What types of attacks does CVE-2004-2332 enable?
CVE-2004-2332 enables remote attackers to conduct cross-site scripting (XSS) attacks.
4
Which software versions are affected by CVE-2004-2332?
CVE-2004-2332 affects CPAN WWW::Form version 1.12 and earlier.
5
What is the primary risk associated with CVE-2004-2332?
The primary risk associated with CVE-2004-2332 is the unauthorized execution of arbitrary web scripts or HTML.