Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in VBzoom allow remote attackers to inject arbitrary web script and HTML via the (1) UserName parameter to profile.php or (2) UserID parameter to login.php.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Vbzoom | Vbzoom | All versions |
References
- http://marc.info/?l=bugtraq&m=112300586019568&w=2
- http://secunia.com/advisories/16220
- http://securitytracker.com/id?1014614
- http://www.osvdb.org/18662
- http://www.osvdb.org/18663
- http://www.securityfocus.com/archive/1/426874/100/0/threaded
- http://www.securityfocus.com/bid/14423
- https://exchange.xforce.ibmcloud.com/vulnerabilities/21680
- http://marc.info/?l=bugtraq&m=112300586019568&w=2
- http://secunia.com/advisories/16220
- http://securitytracker.com/id?1014614
- http://www.osvdb.org/18662
- http://www.osvdb.org/18663
- http://www.securityfocus.com/archive/1/426874/100/0/threaded
- http://www.securityfocus.com/bid/14423
FAQ
What is CVE-2005-2441?
CVE-2005-2441 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Multiple cross-site scripting (XSS) vulnerabilities in VBzoom allow remote attackers to inject arbitrary web script and HTML via the (1) UserName parameter to profile.php or (2) UserID parameter to lo...
How severe is CVE-2005-2441?
CVE-2005-2441 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-2441?
Check the references section above for vendor advisories and patch information. Affected products include: Vbzoom Vbzoom.