Vulnerability Description
Cross-site scripting (XSS) vulnerability in index.php in Jelsoft vBulletin allows remote attackers to spoof parts of a website via the loc parameter.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Jelsoft | Vbulletin | 1.0.1 |
References
- http://www.infosecurity.org.cn/article/hacker/exploit/16557.html
- http://www.securityfocus.com/bid/10362Exploit
- http://www.infosecurity.org.cn/article/hacker/exploit/16557.html
- http://www.securityfocus.com/bid/10362Exploit
FAQ
What is CVE-2004-2288?
CVE-2004-2288 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Cross-site scripting (XSS) vulnerability in index.php in Jelsoft vBulletin allows remote attackers to spoof parts of a website via the loc parameter.
How severe is CVE-2004-2288?
CVE-2004-2288 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-2288?
Check the references section above for vendor advisories and patch information. Affected products include: Jelsoft Vbulletin.