CVE-2004-0660 Information
Feb 14, 2021
cve
Description
Cross-site scripting (XSS) vulnerability in (1) show_archives.php (2) show_news.php and possibly other php files in CuteNews 1.3.1 allows remote attackers to inject arbitrary script or HTML via the id parameter.
Reference
http://marc.info/?l=bugtraq&m=108844000409449&w=2 http://www.swp-zone.org/archivos/advisory-06.txt https://exchange.xforce.ibmcloud.com/vulnerabilities/16525
Share on: