Musicmatch Jukebox 10.00.2047 and earlier adds the musicmatch.com domain to the Trusted Sites zone in Internet Explorer, which allows systems in the domain to conduct unauthorized activities, as demonstrated using cross-site scripting (XSS) attacks.
References
Configurations
History
20 Nov 2024, 23:56
Type | Values Removed | Values Added |
---|---|---|
References | () http://seclists.org/lists/bugtraq/2005/Apr/0212.html - Patch | |
References | () http://securitytracker.com/id?1013718 - Patch | |
References | () http://www.hyperdose.com/advisories/H2005-04.txt - Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/20129 - |
Information
Published : 2005-05-02 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2005-1186
Mitre link : CVE-2005-1186
CVE.ORG link : CVE-2005-1186
JSON object : View
Products Affected
musicmatch
- jukebox
CWE