Unrated severityNVD Advisory· Published Dec 22, 2005· Updated Apr 16, 2026
CVE-2005-4492
CVE-2005-4492
Description
Cross-site scripting (XSS) vulnerability in Starphire SiteSage 5.0.18 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the norelay_highlight_words parameter.
Affected products
5- cpe:2.3:a:starphire_technologies:sitesage:5.0.18:*:*:*:*:*:*:*
- cpe:2.3:a:starphire_technologies:sitesage-ee:*:*:*:*:*:*:*:*
- cpe:2.3:a:starphire_technologies:sitesage-le:*:*:*:*:*:*:*:*
- cpe:2.3:a:starphire_technologies:sitesage-sb:*:*:*:*:*:*:*:*
- cpe:2.3:a:starphire_technologies:sitesage-se:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.