Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2005-0085
Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTML via the config parameter, which is not properly sanitized before it is displayed in an error message.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.047
EPSS Ranking
88.8%
CVSS Severity
CVSS v2 Score
6.8
References
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.46/SCOSA-2005.46.txt
http://secunia.com/advisories/14255
http://secunia.com/advisories/14276
http://secunia.com/advisories/14303
http://secunia.com/advisories/14795
http://secunia.com/advisories/15007
http://secunia.com/advisories/17414
http://secunia.com/advisories/17415
http://securitytracker.com/id?1013078
http://www.debian.org/security/2005/dsa-680
http://www.gentoo.org/security/en/glsa/glsa-200502-16.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2005:063
http://www.redhat.com/archives/fedora-legacy-announce/2006-January/msg00002.html
http://www.redhat.com/support/errata/RHSA-2005-073.html
http://www.redhat.com/support/errata/RHSA-2005-090.html
http://www.securityfocus.com/bid/12442
https://exchange.xforce.ibmcloud.com/vulnerabilities/19223
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10878
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.46/SCOSA-2005.46.txt
http://secunia.com/advisories/14255
http://secunia.com/advisories/14276
http://secunia.com/advisories/14303
http://secunia.com/advisories/14795
http://secunia.com/advisories/15007
http://secunia.com/advisories/17414
http://secunia.com/advisories/17415
http://securitytracker.com/id?1013078
http://www.debian.org/security/2005/dsa-680
http://www.gentoo.org/security/en/glsa/glsa-200502-16.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2005:063
http://www.redhat.com/archives/fedora-legacy-announce/2006-January/msg00002.html
http://www.redhat.com/support/errata/RHSA-2005-073.html
http://www.redhat.com/support/errata/RHSA-2005-090.html
http://www.securityfocus.com/bid/12442
https://exchange.xforce.ibmcloud.com/vulnerabilities/19223
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10878
Products affected by CVE-2005-0085
Htdig
»
Htdig
»
Version:
3.1.5
cpe:2.3:a:htdig:htdig:3.1.5
Htdig
»
Htdig
»
Version:
3.1.5_7
cpe:2.3:a:htdig:htdig:3.1.5_7
Htdig
»
Htdig
»
Version:
3.1.5_8
cpe:2.3:a:htdig:htdig:3.1.5_8
Htdig
»
Htdig
»
Version:
3.1.6
cpe:2.3:a:htdig:htdig:3.1.6
Htdig
»
Htdig
»
Version:
3.2.0
cpe:2.3:a:htdig:htdig:3.2.0
Htdig
»
Htdig
»
Version:
3.2.0b2
cpe:2.3:a:htdig:htdig:3.2.0b2
Htdig
»
Htdig
»
Version:
3.2.0b3
cpe:2.3:a:htdig:htdig:3.2.0b3
Htdig
»
Htdig
»
Version:
3.2.0b4
cpe:2.3:a:htdig:htdig:3.2.0b4
Htdig
»
Htdig
»
Version:
3.2.0b5
cpe:2.3:a:htdig:htdig:3.2.0b5
Htdig
»
Htdig
»
Version:
3.2.0b6
cpe:2.3:a:htdig:htdig:3.2.0b6
Mandrakesoft
»
Mandrake Linux
»
Version:
10.0
cpe:2.3:o:mandrakesoft:mandrake_linux:10.0
Mandrakesoft
»
Mandrake Linux
»
Version:
10.1
cpe:2.3:o:mandrakesoft:mandrake_linux:10.1
Mandrakesoft
»
Mandrake Linux Corporate Server
»
Version:
2.1
cpe:2.3:o:mandrakesoft:mandrake_linux_corporate_server:2.1
Mandrakesoft
»
Mandrake Linux Corporate Server
»
Version:
3.0
cpe:2.3:o:mandrakesoft:mandrake_linux_corporate_server:3.0
Redhat
»
Fedora Core
»
Version:
core_3.0
cpe:2.3:o:redhat:fedora_core:core_3.0
Suse
»
Suse Linux
»
Version:
8.0
cpe:2.3:o:suse:suse_linux:8.0
Suse
»
Suse Linux
»
Version:
8.1
cpe:2.3:o:suse:suse_linux:8.1
Suse
»
Suse Linux
»
Version:
8.2
cpe:2.3:o:suse:suse_linux:8.2
Suse
»
Suse Linux
»
Version:
9.0
cpe:2.3:o:suse:suse_linux:9.0
Suse
»
Suse Linux
»
Version:
9.1
cpe:2.3:o:suse:suse_linux:9.1
Suse
»
Suse Linux
»
Version:
9.2
cpe:2.3:o:suse:suse_linux:9.2
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved