Unrated severityNVD Advisory· Published Aug 10, 2011· Updated Apr 29, 2026
CVE-2011-1976
CVE-2011-1976
Description
Cross-site scripting (XSS) vulnerability in the Report Viewer Control in Microsoft Visual Studio 2005 SP1 and Report Viewer 2005 SP1 allows remote attackers to inject arbitrary web script or HTML via a parameter in a data source, aka "Report Viewer Controls XSS Vulnerability."
Affected products
3cpe:2.3:a:microsoft:report_viewer:2005:sp1:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:microsoft:report_viewer:2005:sp1:*:*:*:*:*:*
- cpe:2.3:a:microsoft:report_viewer:2005:sp1:redistributable_package:*:*:*:*:*
- cpe:2.3:a:microsoft:visual_studio:2005:sp1:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- marc.infonvdThird Party Advisory
- www.us-cert.gov/cas/techalerts/TA11-221A.htmlnvdThird Party AdvisoryUS Government Resource
- h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplaynvdThird Party Advisory
- www.securityfocus.com/bid/49033nvd
- docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-067nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12773nvd
News mentions
0No linked articles in our index yet.