CVE-2008-3941
BizDirectory <2.04 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in BizDirectory 2.04 and earlier allows remote attackers to inject arbitrary web script or HTML via the page parameter in a search action to the default URI.
Exploits (1)
Scores
EPSS
0.0161
EPSS Percentile
81.5%
Classification
CWE
CWE-79
Status
draft
Affected Products (3)
bizdirectory/bizdirectory
< 2.04
bizdirectory/bizdirectory
bizdirectory/bizdirectory
Timeline
Published
Sep 05, 2008
Tracked Since
Feb 18, 2026