Unrated severityNVD Advisory· Published Dec 10, 2004· Updated Apr 16, 2026
CVE-2004-1059
CVE-2004-1059
Description
Multiple cross-site scripting (XSS) vulnerabilities in mnoGoSearch 3.2.26 and earlier allow remote attackers to inject arbitrary HTML and web script via the (1) next and (2) prev result search pages, and the (3) extended and (4) simple search forms.
Affected products
17cpe:2.3:a:mnogosearch:mnogosearch:3.1.19:*:*:*:*:*:*:*+ 16 more
- cpe:2.3:a:mnogosearch:mnogosearch:3.1.19:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.1.20:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.10:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.13:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.14:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.15:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.16:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.17:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.18:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.19:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.20:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.21:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.22:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.23:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.24:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.25:*:*:*:*:*:*:*
- cpe:2.3:a:mnogosearch:mnogosearch:3.2.26:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- lists.grok.org.uk/pipermail/full-disclosure/2004-December/030222.htmlnvdPatchVendor Advisory
- www.mikx.de/index.phpnvdPatchVendor Advisory
- www.mnogosearch.org/history.htmlnvdPatchVendor Advisory
- www.securityfocus.com/bid/11895nvdPatchVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/18434nvd
News mentions
0No linked articles in our index yet.