CVE-2005-0910: XSS
Multiple cross-site scripting (XSS) vulnerabilities in exoops allow remote attackers to inject arbitrary web script or HTML via (1) the sortdays parameter to viewforum.php or (2) the viewcat parameter to index.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0910?
The severity of CVE-2005-0910 is generally considered moderate due to its potential for cross-site scripting attacks impacting user data.
How do I fix CVE-2005-0910?
To fix CVE-2005-0910, ensure you update to the latest version of XOOPS where this vulnerability is patched.
What are the affected components of CVE-2005-0910?
CVE-2005-0910 affects the viewforum.php and index.php scripts in XOOPS through specific parameters that are vulnerable to XSS.
Who is impacted by CVE-2005-0910?
Websites running vulnerable versions of XOOPS may be impacted by CVE-2005-0910, allowing attackers to exploit XSS vulnerabilities.
Can CVE-2005-0910 lead to data theft?
Yes, CVE-2005-0910 can potentially lead to data theft by enabling attackers to inject malicious scripts that capture user information.