Unrated severityNVD Advisory· Published Jan 6, 2005· Updated Apr 16, 2026
CVE-2004-1318
CVE-2004-1318
Description
Cross-site scripting (XSS) vulnerability in namazu.cgi for Namazu 2.0.13 and earlier allows remote attackers to inject arbitrary HTML and web script via a query that starts with a tab ("%09") character, which prevents the rest of the query from being properly sanitized.
Affected products
3Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
12- www.namazu.org/security.html.ennvdPatchVendor Advisory
- jvn.jp/jp/JVN%23904429FE.htmlnvdVendor Advisory
- www.debian.org/security/2005/dsa-627nvdVendor Advisory
- secunia.com/advisories/13600nvd
- securitytracker.com/alerts/2005/Jan/1012802.htmlnvd
- securitytracker.com/alerts/2005/Jan/1012805.htmlnvd
- www.linuxsecurity.com/content/view/117604/102/nvd
- www.novell.com/linux/security/advisories/2005_01_sr.htmlnvd
- www.osvdb.org/12516nvd
- www.securityfocus.com/advisories/9028nvd
- www.securityfocus.com/bid/12053nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/18623nvd
News mentions
0No linked articles in our index yet.