Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-1930

Cross-site scripting (XSS) vulnerability in the cookiedecode function in mainfile.php for PHP-Nuke 6.x through 7.2, when themes are used, allows remote attackers to inject arbitrary web script or HTML via a base64-encoded user parameter or cookie.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 39.0%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2004-1930


Contact Us

Shodan ® - All rights reserved