Unrated severityNVD Advisory· Published Dec 22, 2005· Updated Jun 16, 2026
CVE-2005-4497
CVE-2005-4497
Description
Cross-site scripting (XSS) vulnerability in Tangora Portal CMS 4.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the action parameter in a search page, as demonstrated using (1) page1631.aspx and (2) page496.aspx.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:tangora:tangora_portal_cms:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:tangora:tangora_portal_cms:*:*:*:*:*:*:*:*range: <=4.0
- (no CPE)range: <=4.0
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.