First published: Tue Sep 27 2005(Updated: )
Cross-site scripting (XSS) vulnerability in index.php in CMS Made Simple 0.10 allows remote attackers to inject arbitrary web script or HTML via the page parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Really Simple CMS | =0.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3083 is classified as a medium severity vulnerability due to its cross-site scripting (XSS) nature.
To fix CVE-2005-3083, it is recommended to upgrade CMS Made Simple to a version later than 0.10 that has addressed this XSS vulnerability.
CVE-2005-3083 allows remote attackers to inject arbitrary web scripts or HTML, potentially leading to data theft or site defacement.
CVE-2005-3083 is primarily a concern for users still running CMS Made Simple 0.10; those using updated versions are protected.
You can determine if your site is affected by CVE-2005-3083 by checking if you are running CMS Made Simple version 0.10 or older.