CVE-2005-2112
Xoops - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.0.11 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) order parameter to edit.php or (2) cid parameter to comment_edit.php.
Exploits (1)
References (4)
Scores
EPSS
0.0056
EPSS Percentile
67.8%
Classification
Status
draft
Affected Products (15)
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
xoops/xoops
Timeline
Published
Jul 05, 2005
Tracked Since
Feb 18, 2026