4.3
CVSSv2

CVE-2003-0504

Published: 07/08/2003 Updated: 18/10/2016
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in Phpgroupware 0.9.14.003 (aka webdistro) allow remote malicious users to insert arbitrary HTML or web script, as demonstrated with a request to index.php in the addressbook module.

Vulnerable Product Search on Vulmon Subscribe to Product

phpgroupware phpgroupware 0.9.14.003

Vendor Advisories

Several vulnerabilities have been discovered in phpgroupware: CAN-2003-0504: Multiple cross-site scripting (XSS) vulnerabilities in Phpgroupware 0914003 (aka webdistro) allow remote attackers to insert arbitrary HTML or web script, as demonstrated with a request to indexphp in the addressbook module CAN-2003-0599: Unknown vulnerability ...