CVE Database
/

CVE-2004-0358

Back to search

CVE-2004-0358

Published: Mar 18, 2004

Modified: Aug 8, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in VirtuaNews Admin Panel Pro 1.0.3 allows remote attackers to execute arbitrary script as other users via (1) the mainnews parameter in admin.php, (2) the expand parameter in admin.php, (3) the id parameter in admin.php, (4) the catid parameter in admin.php, or (5) an unnamed parameter during the newslogo_upload action in admin.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

virtuanews-multiple-xss(15402)
vdb-entry
x_refsource_XF
9812
vdb-entry
x_refsource_BID
9819
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2004-0358 - Security Vulnerability | QwikSec