PT-2005-3903 · Interchange · Interchange

Published

2005-09-27

·

Updated

2017-07-11

·

CVE-2005-3073

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Interchange versions 4.9.3 through 5.0.1, version 5.2
Description The issue allows attackers to inject Interchange Tag Language (ITL) elements into the forum/submit.html page when a catalog has been created using the "mike", "standard", or "foundation" demo.
Recommendations For versions 4.9.3 through 5.0.1 and version 5.2, update to version 5.0.2 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-3073

Affected Products

Interchange