Injection Vulnerability in Interchange Product by Interchange Development Group
CVE-2005-3073

Currently unrated

Key Information:

Vendor
CVE Published:
27 September 2005

What is CVE-2005-3073?

A vulnerability in Interchange 5.0.1 and prior versions allows for the injection of Interchange Tag Language (ITL) elements. This issue affects catalogs created using certain demo setups, specifically 'mike', 'standard', or 'foundation'. Attackers can target the forum/submit.html page to exploit this vulnerability, potentially compromising the application's integrity and allowing unauthorized actions. It is essential for users and administrators to apply necessary updates and securely configure their systems to mitigate the risks associated with this issue.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.