MidnightBSD

Advisories for starphire_technologies

CVE-2005-4492 MEDIUM

Cross-site scripting (XSS) vulnerability in Starphire SiteSage 5.0.18 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the norelay_highlight_words parameter.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
starphire_technologies sitesage-sb *
starphire_technologies sitesage-le *
starphire_technologies sitesage 5.0.18
starphire_technologies sitesage-ee *
starphire_technologies sitesage-se *