Multiple cross-site scripting (XSS) vulnerabilities in Annuaire 1Two 1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the id parameter to index.php, or the (2) site_id, (3) nom, (4) email, or (5) commentaire parameters in commentaires.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-06-14T04:00:00

Updated: 2024-08-07T22:06:57.912Z

Reserved: 2005-06-14T00:00:00

Link: CVE-2005-1975

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2005-06-16T04:00:00.000

Modified: 2008-09-05T20:50:34.087

Link: CVE-2005-1975

cve-icon Redhat

No data.