CVE-2005-4386

Colony CMS <2.75 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in Colony CMS 2.75 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters.

Scores

EPSS 0.0035
EPSS Percentile 56.9%

Classification

CWE
CWE-79
Status draft

Affected Products (4)

colony/colony_cms < 2.75
colony/colony_e-commerce_cms
colony/colony_enterprise_cms
colony/colony_government_cms

Timeline

Published Dec 20, 2005
Tracked Since Feb 18, 2026