Back to search
CVE-2005-0782
Published: Mar 20, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in (1) viewall.php and (2) category.php for paFileDB 3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the start parameter to pafiledb.php.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://digitalparadox.org/advisories/pafdb.txt
x_refsource_MISC
20050312 [SECURITYREASON.COM] SQL injection and XSS in paFileDB
mailing-list
x_refsource_BUGTRAQ
pafiledb-viewall-category-xss(19690)
vdb-entry
x_refsource_XF
12788
vdb-entry
x_refsource_BID
20050330 PaFileDB Version 3.1 and below are exploitable via a XSS and a SQL injection vulnerability
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now