Cross-site Scripting Vulnerability in Lutece by Atnou
CVE-2005-4401

Currently unrated

Key Information:

Vendor

Lutece

Status
Vendor
CVE Published:
20 December 2005

What is CVE-2005-4401?

Lutece versions 1.2.3 and earlier are susceptible to a cross-site scripting (XSS) vulnerability, allowing remote attackers to inject arbitrary web scripts or HTML into web pages. This security flaw arises from unsanitized input via various search parameters, which can potentially lead to unauthorized actions on behalf of users, compromising the integrity of the web application.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.