CVE Database
/

CVE-2003-0287

Back to search

CVE-2003-0287

Published: May 14, 2003

Modified: Aug 8, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Movable Type before 2.6, and possibly other versions including 2.63, allows remote attackers to insert arbitrary web script or HTML via the Name textbox, possibly when the "Allow HTML in comments?" option is enabled.

VendorProductVersions

n/a

n/a

affected
n/a

References

20030513 Re: CSS found in Movable Type -- Nope
mailing-list
x_refsource_BUGTRAQ
movable-type-comment-xss(12003)
vdb-entry
x_refsource_XF
20030512 Re: CSS found in Movable Type
mailing-list
x_refsource_BUGTRAQ
7560
vdb-entry
x_refsource_BID
20030512 CSS found in Movable Type
mailing-list
x_refsource_BUGTRAQ

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now