CVE-2005-4385
NUCLEICofax 2.0 RC3- - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in search.htm in Cofax 2.0 RC3 and earlier allows remote attackers to inject arbitrary web script or HTML via the searchstring parameter.
Exploits (1)
Nuclei Templates (1)
Cofax <=2.0RC3 - Cross-Site Scripting
MEDIUMby geeknik
References (4)
Scores
EPSS
0.0045
EPSS Percentile
63.6%
Details
Status
published
Products (5)
cofax/cofax
1.9.9c
cofax/cofax
1.9.9d
cofax/cofax
2.0_rc1
cofax/cofax
2.0_rc2
cofax/cofax
2.0_rc3
Published
Dec 20, 2005
Tracked Since
Feb 18, 2026