Unrated severityNVD Advisory· Published Dec 20, 2005· Updated Apr 16, 2026
CVE-2005-4386
CVE-2005-4386
Description
Cross-site scripting (XSS) vulnerability in Colony CMS 2.75 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters.
Affected products
4- cpe:2.3:a:colony:colony_e-commerce_cms:-:*:*:*:*:*:*:*
- cpe:2.3:a:colony:colony_enterprise_cms:*:*:*:*:*:*:*:*
- cpe:2.3:a:colony:colony_government_cms:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.