CVE-2005-4484
IntranetApp < 3.3 - Cross-Site Scripting via login.asp ret_page or content.asp Parameters
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2005-4484. PoCs published by r0t.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in IntranetApp versions 3.3 and prior. It explains the vulnerability and provides an example URL demonstrating the issue.
Description
Multiple cross-site scripting (XSS) vulnerabilities in IntranetApp 3.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) ret_page parameter to login.asp or the (2) do_search and (3) search parameters to content.asp.
Exploits (2)
The provided text describes a cross-site scripting (XSS) vulnerability in IntranetApp versions 3.3 and prior. It explains the vulnerability and provides an example URL demonstrating the issue.
The provided text describes a cross-site scripting (XSS) vulnerability in IntranetApp version 3.3 and prior. It includes example URLs demonstrating how arbitrary script code can be executed due to improper input sanitization.