4.3
CVSSv2

CVE-2005-1945

Published: 09/06/2005 Updated: 18/10/2016
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the convert_highlite_words function in Invision Blog prior to 1.1.2 Final allows remote malicious users to inject arbitrary web script or HTML via double hex encoded highlight data.

Vulnerable Product Search on Vulmon Subscribe to Product

invision power services invision community blog 1.1

invision power services invision community blog 1.0