← Back

CVE-2004-0663

nvd nist
Published: Aug 6, 2004Modified: Apr 16, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in modules.php in PowerPortal 1.x allows remote attackers to inject arbitrary script or HTML via the (1) id parameter to the (a) private_messages module; (2) search parameter to the (b) links and (c) content modules; and (3) files parameter to the gallery module.

Affected (3)

1 product
Powerportal
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Powerportal
Version 1.1b
Version 1.3
Version 1.3b

References (6)

Timeline

No history available yet.