CVE-2005-1803

N/A Unknown
Published: May 29, 2005 Modified: April 16, 2026
View on NVD

Description

Multiple cross-site scripting (XSS) vulnerabilities in Net Portal Dynamic System (NPDS) 5.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) admin.php, or (2) powerpack_f.php, (3) the sitename parameter to sdv_infos.php, (4) the categories parameter to faq.php, (5) the lettre parameter to the glossaire module, (6) the title parameter to reviews.php, or (7) the image_subject parameter to reply.php.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://securitytracker.com/id?1014073
Source: cve@mitre.org
Exploit Patch Vendor Advisory
http://www.npds.org/download.php?op=geninfo&did=115
Source: cve@mitre.org
Vendor Advisory
http://www.osvdb.org/16464
Source: cve@mitre.org
http://www.osvdb.org/16922
Source: cve@mitre.org
http://securitytracker.com/id?1014073
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Patch Vendor Advisory
http://www.npds.org/download.php?op=geninfo&did=115
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.osvdb.org/16464
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/16922
Source: af854a3a-2127-422b-91ae-364da2661108

8 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
0.4%
58th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

net_portal_dynamic_system