CVE-2005-2839: XSS
Published Sep 7, 2005
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in MAXdev MD-Pro 1.0.72 allow remote attackers to inject arbitrary web script or HTML via (1) dl-search.php or (2) wl-search.php.
Affected Software
1 affected component
MAXdev MD-Pro=1.0.72
Remediation
Patch Available
Event History
Sep 7, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2839?
CVE-2005-2839 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2005-2839?
To fix CVE-2005-2839, update MAXdev MD-Pro to a patched version that addresses the XSS vulnerabilities.
3
What are the potential impacts of CVE-2005-2839?
The potential impacts of CVE-2005-2839 include unauthorized access to sensitive user data and the ability to execute malicious scripts in the context of the user's session.
4
Which software is affected by CVE-2005-2839?
CVE-2005-2839 affects MAXdev MD-Pro version 1.0.72.
5
What are the attack vectors for CVE-2005-2839?
The attack vectors for CVE-2005-2839 involve injecting scripts through the dl-search.php and wl-search.php files.