PT-2005-5166 · Siteenable · Siteenable
Published
2005-12-22
·
Updated
2013-08-30
·
CVE-2005-4483
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
SiteEnable versions 3.3 and earlier
Description
A cross-site scripting (XSS) issue exists, allowing remote attackers to inject arbitrary web script or HTML via the
ret page parameter in the "login.asp" page.Recommendations
For SiteEnable versions 3.3 and earlier, update to a version later than 3.3 to resolve the issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Siteenable