Cross-site scripting (XSS) vulnerability in Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions before 6 allows remote attackers to inject arbitrary web script or HTML via the context parameter to announcement.pl, which is reflected in the resulting page.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www.ipomonis.com/advisories/Bb_6.zip |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-12-17T21:00:00Z
Updated: 2024-09-16T23:47:05.905Z
Reserved: 2005-12-17T00:00:00Z
Link: CVE-2005-4339
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-12-19T03:47:00.000
Modified: 2024-11-21T00:04:01.367
Link: CVE-2005-4339
Redhat
No data.