| Vulnerability Name: | CVE-2005-3104 (CCN-22372) | ||||||||
| Assigned: | 2005-09-22 | ||||||||
| Published: | 2005-09-22 | ||||||||
| Updated: | 2008-09-05 | ||||||||
| Summary: | mt-comments.cgi in Movable Type before 3.2 allows attackers to redirect users to other web sites via URLs in comments. | ||||||||
| CVSS v3 Severity: | 3.7 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)
| ||||||||
| CVSS v2 Severity: | 2.6 Low (CVSS v2 Vector: AV:N/AC:H/Au:N/C:N/I:P/A:N)
| ||||||||
| Vulnerability Type: | CWE-Other | ||||||||
| Vulnerability Consequences: | Obtain Information | ||||||||
| References: | Source: FULLDISC Type: UNKNOWN 20051103 Buggy blogging Source: MITRE Type: CNA CVE-2005-3104 Source: CCN Type: SA16899 Movable Type Multiple Weaknesses and Vulnerabilities Source: SECUNIA Type: Vendor Advisory 16899 Source: CCN Type: OSVDB ID: 19604 Movable Type mt-comments.cgi Arbitrary External Site Redirection Source: CCN Type: Movable Type Web site Movable Type Source: XF Type: UNKNOWN movabletype-mtcomments-spoofing(22372) | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||