Vulnerability Details CVE-2005-3334
Cross-site scripting (XSS) vulnerability in index.php in Flyspray 0.9.7 through 0.9.8 (devel) allows remote attackers to inject arbitrary web script or HTML via the (1) PHPSESSID, (2) task, (3) string, (4) type, (5) serv, (6) due, (7) dev, and (8) sort2 parameters.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.102
EPSS Ranking 92.9%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2005-3334
-
cpe:2.3:a:flyspray:flyspray:0.9.7
-
cpe:2.3:a:flyspray:flyspray:0.9.8