Back to search
CVE-2003-1554
Published: Mar 26, 2008
Modified: Aug 8, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in scozbook/add.php in ScozNet ScozBook 1.1 BETA allows remote attackers to inject arbitrary web script or HTML via the (1) username, (2) useremail, (3) aim, (4) msn, (5) sitename and (6) siteaddy variables.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20030329 ScozBook BETA 1.1 vulnerabilities
mailing-list
x_refsource_BUGTRAQ
8476
third-party-advisory
x_refsource_SECUNIA
7235
vdb-entry
x_refsource_BID
3781
third-party-advisory
x_refsource_SREASON
scozbook-add-xss(11658)
vdb-entry
x_refsource_XF
1006413
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now