CVE-2005-2338

Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.0.12 JP and earlier, XOOPS 2.0.13.1 and earlier, and 2.2.x up to 2.2.3 RC1 allow remote attackers to inject arbitrary web script or HTML via (1) modules that use "XOOPS Code" and (2) newbb in the forum module.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:xoops:xoops:*:*:*:*:*:*:*:*
cpe:2.3:a:xoops:xoops:*:*:*:*:*:*:*:*
cpe:2.3:a:xoops:xoops:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-10-27 01:02

Updated : 2023-12-10 10:28


NVD link : CVE-2005-2338

Mitre link : CVE-2005-2338

CVE.ORG link : CVE-2005-2338


JSON object : View

Products Affected

xoops

  • xoops