PT-2005-3903 · Interchange · Interchange
Publicado
2005-09-27
·
Atualizado
2017-07-11
·
CVE-2005-3073
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Interchange versions 4.9.3 through 5.0.1, version 5.2
Description
The issue allows attackers to inject Interchange Tag Language (ITL) elements into the forum/submit.html page when a catalog has been created using the "mike", "standard", or "foundation" demo.
Recommendations
For versions 4.9.3 through 5.0.1 and version 5.2, update to version 5.0.2 or later to resolve the issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Interchange