Unrated severityNVD Advisory· Published Dec 20, 2005· Updated Apr 16, 2026
CVE-2005-4396
CVE-2005-4396
Description
Cross-site scripting (XSS) vulnerability in admin/Default.asp in iCMS allows remote attackers to inject arbitrary web script or HTML via the LoginMSG parameter. NOTE: the provenance of this issue is unknown; the details were obtained solely from third party sources.
Affected products
1- cpe:2.3:a:icms_content_management_systems:icms:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- secunia.com/advisories/18085nvdVendor Advisory
- www.osvdb.org/21809nvd
News mentions
0No linked articles in our index yet.