VYPR
Unrated severityNVD Advisory· Published Dec 22, 2005· Updated Apr 16, 2026

CVE-2005-4489

CVE-2005-4489

Description

Cross-site scripting (XSS) vulnerability in Scoop 1.1 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) type and (2) count parameters, and (3) the query string in a story.

Affected products

1
  • cpe:2.3:a:scoop:scoop:*:*:*:*:*:*:*:*
    Range: <=1.1_rc1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.