PT-2003-1517 · Ez Systems · Ez Publish
Ferruh Mavituna
·
Published
2003-05-17
·
Updated
2016-10-18
·
CVE-2003-0310
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
eZ publish version 2.2
Description:
A cross-site scripting (XSS) issue exists, allowing remote attackers to insert arbitrary web script. This occurs in the articleview.php file.
Recommendations:
For eZ publish version 2.2, update to a version that fixes this issue to prevent remote attackers from inserting arbitrary web script.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ez Publish