CVE
- Id
- 8495
- CVE No.
- CVE-2004-0067
- Status
- Candidate
- Description
- Multiple cross-site scripting (XSS) vulnerabilities in phpGedView before 2.65 allow remote attackers to inject arbitrary HTML or web script via (1) descendancy.php, (2) index.php, (3) individual.php, (4) login.php, (5) relationship.php, (6) source.php, (7) imageview.php, (8) calendar.php, (9) gedrecord.php, (10) login.php, and (11) gdbi_interface.php. NOTE: some aspects of vector 10 were later reported to affect 4.1.
- Phase
- Modified (20090127)
- Votes
- ACCEPT(3) Armstrong, Baker, Williams | NOOP(3) Cole, Cox, Wall
- Comments
- Williams> http://sourceforge.net/project/showfiles.php?group_id=55456
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 51948 | 8495 | CVE-2004-0067 | BUGTRAQ:20040112 More phpGedView Vulnerabilities | View |
| 51949 | 8495 | CVE-2004-0067 | URL:http://marc.info/?l=bugtraq&m=107394912715478&w=2 | View |
| 51950 | 8495 | CVE-2004-0067 | BUGTRAQ:20070827 PhpGedView login page multiple XSS | View |
| 51951 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/archive/1/archive/1/477881/100/0/threaded | View |
| 51952 | 8495 | CVE-2004-0067 | BID:11868 | View |
| 51953 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11868 | View |
| 51954 | 8495 | CVE-2004-0067 | BID:11880 | View |
| 51955 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11880 | View |
| 51956 | 8495 | CVE-2004-0067 | BID:11882 | View |
| 51957 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11882 | View |
| 51958 | 8495 | CVE-2004-0067 | BID:11888 | View |
| 51959 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11888 | View |
| 51960 | 8495 | CVE-2004-0067 | BID:11890 | View |
| 51961 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11890 | View |
| 51962 | 8495 | CVE-2004-0067 | BID:11891 | View |
| 51963 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11891 | View |
| 51964 | 8495 | CVE-2004-0067 | BID:11894 | View |
| 51965 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11894 | View |
| 51966 | 8495 | CVE-2004-0067 | BID:11903 | View |
| 51967 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11903 | View |
| 51968 | 8495 | CVE-2004-0067 | BID:11904 | View |
| 51969 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11904 | View |
| 51970 | 8495 | CVE-2004-0067 | BID:11905 | View |
| 51971 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11905 | View |
| 51972 | 8495 | CVE-2004-0067 | BID:11906 | View |
| 51973 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11906 | View |
| 51974 | 8495 | CVE-2004-0067 | BID:11907 | View |
| 51975 | 8495 | CVE-2004-0067 | URL:http://www.securityfocus.com/bid/11907 | View |
| 51976 | 8495 | CVE-2004-0067 | VUPEN:ADV-2007-2995 | View |
| 51977 | 8495 | CVE-2004-0067 | URL:http://www.vupen.com/english/advisories/2007/2995 | View |
| 51978 | 8495 | CVE-2004-0067 | OSVDB:3473 | View |
| 51979 | 8495 | CVE-2004-0067 | URL:http://www.osvdb.org/3473 | View |
| 51980 | 8495 | CVE-2004-0067 | OSVDB:3474 | View |
| 51981 | 8495 | CVE-2004-0067 | URL:http://www.osvdb.org/3474 | View |
| 51982 | 8495 | CVE-2004-0067 | OSVDB:3475 | View |
| 51983 | 8495 | CVE-2004-0067 | URL:http://www.osvdb.org/3475 | View |
| 51984 | 8495 | CVE-2004-0067 | OSVDB:3476 | View |
| 51985 | 8495 | CVE-2004-0067 | URL:http://www.osvdb.org/3476 | View |
| 51986 | 8495 | CVE-2004-0067 | OSVDB:3477 | View |
| 51987 | 8495 | CVE-2004-0067 | URL:http://www.osvdb.org/3477 | View |
| 51988 | 8495 | CVE-2004-0067 | OSVDB:3478 | View |
| 51989 | 8495 | CVE-2004-0067 | URL:http://www.osvdb.org/3478 | View |
| 51990 | 8495 | CVE-2004-0067 | OSVDB:3479 | View |
| 51991 | 8495 | CVE-2004-0067 | URL:http://www.osvdb.org/3479 | View |
| 51992 | 8495 | CVE-2004-0067 | SECTRACK:1018613 | View |
| 51993 | 8495 | CVE-2004-0067 | URL:http://securitytracker.com/id?1018613 | View |
| 51994 | 8495 | CVE-2004-0067 | SECUNIA:26628 | View |
| 51995 | 8495 | CVE-2004-0067 | URL:http://secunia.com/advisories/26628 | View |
| 51996 | 8495 | CVE-2004-0067 | XF:phpgedview-login-xss(36285) | View |
| 51997 | 8495 | CVE-2004-0067 | URL:http://xforce.iss.net/xforce/xfdb/36285 | View |
| 51998 | 8495 | CVE-2004-0067 | XF:phpgedview-multiple-xss(14212) | View |