Vulnerability Details CVE-2005-0509
Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for ASCII fullwidth characters that are converted to normal ASCII characters, including ">" and "<".
Exploit prediction scoring system (EPSS) score
EPSS Score 0.082
EPSS Ranking 91.7%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2005-0509
-
cpe:2.3:a:microsoft:.net_framework:1.0
-
cpe:2.3:a:microsoft:.net_framework:1.1
-
cpe:2.3:a:mono:mono:1.0.5