Unrated severityNVD Advisory· Published Aug 31, 2004· Updated Jun 16, 2026
CVE-2004-1648
CVE-2004-1648
Description
Cross-site scripting (XSS) vulnerability in (1) index.asp, (2) ChangePassword.asp, (3) users_list.asp, (4) and users_add.asp in Password Protect allows remote attackers to inject arbitrary web script or HTML via the ShowMsg parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:web_animations:password_protect:*:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
5- secunia.com/advisories/12407nvdExploitVendor Advisory
- www.criolabs.net/advisories/passprotect.txtnvdExploitVendor AdvisoryURL Repurposed
- www.securityfocus.com/bid/11073nvdExploitVendor Advisory
- marc.infonvd
- exchange.xforce.ibmcloud.com/vulnerabilities/17187nvd
News mentions
0No linked articles in our index yet.