Multiple XSS Vulnerabilities in ActiveBuyAndSell by ActiveBuyAndSell
CVE-2005-2063

Currently unrated

Key Information:

Vendor
CVE Published:
29 June 2005

What is CVE-2005-2063?

ActiveBuyAndSell version 6.2 contains multiple cross-site scripting (XSS) vulnerabilities that allow remote attackers to inject arbitrary web scripts or HTML. These vulnerabilities can be exploited via the Title parameter in sendpassword.asp and the Keyword field on search.asp, potentially leading to unauthorized access and manipulation of the affected web applications. It is essential for users of this software to implement necessary security measures to mitigate these risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.