Back to search
CVE-2005-4284
Published: Dec 16, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in StaticStore Search Engine 1.189A and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to search.cgi, possibly the keywords parameter. NOTE: this issue was originally disputed by the vendor, but it has since been acknowledged.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
21714
vdb-entry
x_refsource_OSVDB
15895
vdb-entry
x_refsource_BID
22032
vdb-entry
x_refsource_OSVDB
ADV-2005-2915
vdb-entry
x_refsource_VUPEN
18037
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now