PT-2003-1517 · Ez Systems · Ez Publish

Ferruh Mavituna

·

Published

2003-05-17

·

Updated

2016-10-18

·

CVE-2003-0310

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: eZ publish version 2.2
Description: A cross-site scripting (XSS) issue exists, allowing remote attackers to insert arbitrary web script. This occurs in the articleview.php file.
Recommendations: For eZ publish version 2.2, update to a version that fixes this issue to prevent remote attackers from inserting arbitrary web script.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2003-0310

Affected Products

Ez Publish