MEDIUM
Cross-site scripting (XSS) vulnerability in Tangora Portal CMS 4.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the action parameter in a search page, as demonstrated using (1) page1631.aspx and (2) page496.aspx
Published Dec 22, 2005
4.3
MEDIUMCVSS 2.0
EPSS 1.70%
Description
Affected products
Remediation
Metrics
References (5)
Change history (0)
No recorded changes yet.