MEDIUM
Cross-site scripting (XSS) vulnerability in the default ASP pages on Microsoft Site Server 3.0 on Windows NT 4.0 allows remote attackers to inject arbitrary web script or HTML via the (1) ctr parameter in Default.asp and (2) the query string to formslogin.asp
Published Jul 14, 2005
4.3
MEDIUMCVSS 2.0
EPSS 12.86%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.