4.3
CVSSv2

CVE-2005-0270

Published: 02/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in ReviewPost PHP Pro prior to 2.84 allow remote malicious users to inject arbitrary web script or HTML via the (1) si parameter to showcat.php, (2) cat or (3) page parameter to showproduct.php, or (4) report parameter to reportproduct.php.

Vulnerable Product Search on Vulmon Subscribe to Product

photopost reviewpost php pro 2.5.1

photopost reviewpost php pro

photopost reviewpost php pro 1.0.2

photopost reviewpost php pro 2.5

Exploits

ReviewPost Multiple Vulnerabilities Vendor: All Enthusiast, Inc Product: ReviewPost Version: <= 284 Website: wwwreviewpostcom/ BID: 12159 CVE: CVE-2005-0270 CVE-2005-0271 CVE-2005-0272 OSVDB: 12703 12704 12705 12706 12707 12708 SECUNIA: 13697 PACKETSTORM: 35594 Description: Your community of users represents a wealth of knowle ...