4.3
CVSSv2

CVE-2005-0274

Published: 03/01/2005 Updated: 11/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in showgallery.php in PhotoPost prior to 4.86 allow remote malicious users to inject arbitrary web script or HTML via the (1) cat, (2) si, (3) page, or (4) ppuser parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

photopost photopost php pro

Exploits

PhotoPost Multiple Vulnerabilities Vendor: All Enthusiast, Inc Product: PhotoPost Version: <= 485 Website: wwwphotopostcom/ BID: 12157 CVE: CVE-2005-0273 CVE-2005-0274 OSVDB: 12741 12741 SECUNIA: 13680 PACKETSTORM: 35595 Description: PhotoPost was designed to help you give your users exactly what they want Your users will be ...