TROYANOSYVIRUS
Back to CVEs

CVE-2005-4655

N/A

Description

Cross-site scripting (XSS) vulnerability in submit.php in PHP-Fusion 6.0.204 allows remote attackers to inject arbitrary web script or HTML via nested tags in the news_body parameter, as demonstrated by elements such as "<me<meta>ta" and "<sc<script>ript>".

CVE Details

CVSS v3.1 ScoreN/A
Published12/31/2005
Last Modified4/16/2026
Sourcenvd
Honeypot Sightings0

Affected Products

php_fusion:php_fusion

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.