Unrated severityNVD Advisory· Published Dec 31, 2004· Updated Apr 16, 2026
CVE-2004-2702
CVE-2004-2702
Description
Cross-site scripting (XSS) vulnerability in login_up.php3 in Plesk 7.0 and 7.1 Reloaded allows remote attackers to inject arbitrary web script or HTML via the login_name parameter. NOTE: this might be the same vector as CVE-2006-6451.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.securityfocus.com/bid/11024nvdExploit
- secunia.com/advisories/12368nvdVendor Advisory
- archives.neohapsis.com/archives/fulldisclosure/2004-08/1022.htmlnvd
- archives.neohapsis.com/archives/fulldisclosure/2004-08/1031.htmlnvd
- archives.neohapsis.com/archives/fulldisclosure/2004-12/0554.htmlnvd
- securitytracker.com/idnvd
- www.osvdb.org/9149nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/17085nvd
News mentions
0No linked articles in our index yet.