CVE-2005-4489
Scoop <1.1 RC1 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in Scoop 1.1 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) type and (2) count parameters, and (3) the query string in a story.
Exploits (2)
References (6)
Scores
EPSS
0.0078
EPSS Percentile
73.3%
Classification
Status
draft
Affected Products (1)
scoop/scoop
< 1.1_rc1
Timeline
Published
Dec 22, 2005
Tracked Since
Feb 18, 2026