Vulnerability Details CVE-2008-5729
Multiple cross-site scripting (XSS) vulnerabilities in AIST NetCat 3.12 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) form and (2) control parameters to FCKeditor/neditor.php, and the (3) path parameter to admin/siteinfo/iframe.inc.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 77.6%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2008-5729
-
cpe:2.3:a:netcat:netcat:*
-
cpe:2.3:a:netcat:netcat:1.1
-
cpe:2.3:a:netcat:netcat:2.0
-
cpe:2.3:a:netcat:netcat:2.1
-
cpe:2.3:a:netcat:netcat:2.2
-
cpe:2.3:a:netcat:netcat:2.3
-
cpe:2.3:a:netcat:netcat:2.4
-
cpe:2.3:a:netcat:netcat:3.0