CVE-2005-2327: XSS
Published Jul 20, 2005
·Updated
Cross-site scripting (XSS) vulnerability in e107 0.617 and earlier allows remote attackers to inject arbitrary web script or HTML via nested [url] BBCode tags.
Affected Software
37 affected components
e107 e107=0.551_beta
e107 e107=0.616
e107 e107=5.05
e107 e107=0.549_beta
e107 e107=0.615a
e107 e107=5.21
e107 e107=0.555_beta
e107 e107=0.610
e107 e107=0.607
e107 e107=0.609
e107 e107=5.4_beta6
e107 e107=0.606
e107 e107=0.602
e107 e107=0.554_beta
e107 e107=0.553_beta
e107 e107=0.600
e107 e107=0.552_beta
e107 e107=0.613
e107 e107=0.604
e107 e107=5.4_beta3
e107 e107=0.603
e107 e107=5.4_beta1
e107 e107=0.614
e107 e107=0.547_beta
e107 e107=0.601
e107 e107=5.3_beta2
e107 e107=0.608
e107 e107=0.548_beta
e107 e107=0.611
e107 e107=5.4_beta4
e107 e107=0.605
e107 e107=5.3_beta
e107 e107=5.4_beta5
e107 e107=0.617
e107 e107=0.612
e107 e107=5.1
e107 e107=5.04
Event History
Jul 20, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2327?
CVE-2005-2327 has a medium severity rating due to its potential to allow cross-site scripting (XSS) attacks.
2
How do I fix CVE-2005-2327?
To fix CVE-2005-2327, update your e107 CMS installation to version 0.618 or newer where the vulnerability is addressed.
3
What versions of e107 CMS are affected by CVE-2005-2327?
CVE-2005-2327 affects e107 versions 0.617 and earlier, including various beta versions.
4
What kind of attacks can CVE-2005-2327 allow?
CVE-2005-2327 allows remote attackers to inject arbitrary web scripts or HTML into webpages, leading to XSS attacks.
5
Is CVE-2005-2327 easy to exploit?
Yes, CVE-2005-2327 can be easily exploited by an attacker familiar with XSS vulnerabilities, especially through nested [url] BBCode tags.