Unrated severityNVD Advisory· Published Jun 5, 2008· Updated Jun 16, 2026
CVE-2008-2553
CVE-2008-2553
Description
Cross-site scripting (XSS) vulnerability in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashcode) R_2_5_0_94 and earlier allows remote attackers to inject arbitrary web script or HTML via the userfield parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:slashcode.com:slash:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:slashcode.com:slash:*:*:*:*:*:*:*:*range: <=r_2_5_0_94
- (no CPE)range: <=R_2_5_0_94
- Range: <=R_2_5_0_94
Patches
Vulnerability mechanics
References
9- secunia.com/advisories/30551nvdVendor Advisory
- secunia.com/advisories/31691nvd
- slashcode.cvs.sourceforge.net/slashcode/slash/Slash/Utility/Environment/Environment.pmnvd
- www.debian.org/security/2008/dsa-1633nvd
- www.securityfocus.com/bid/29548nvd
- www.securitytracker.com/idnvd
- www.slashcode.com/article.plnvd
- www.slashcode.com/article.plnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/42882nvd
News mentions
0No linked articles in our index yet.