CVE

Id
10068  
CVE No.
CVE-2004-1640  
Status
Candidate  
Description
Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 0.94 and 1.0 allow remote attackers to execute arbitrary web script and HTML via the (1) terme parameter to search.php or (2) letter parameter to letter.php.  
Phase
Assigned (20050221)  
Votes
None (candidate not yet proposed)  
Comments