1 results (0.002 seconds)

CVSS: 6.8EPSS: 2%CPEs: 1EXPL: 2

03 Jun 2006 — Cross-site scripting (XSS) vulnerability in gallery.php in Captivate 1.0 allows remote attackers to inject arbitrary web script or HTML via the page parameter, which is reflected in an error message. • http://archives.neohapsis.com/archives/bugtraq/2006-05/0413.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •