Back
CVE-2004-1441
Cross-site scripting (XSS) vulnerability in icq.cgi in Board Power 2.04PF allows remote attackers to inject arbitrary web script or HTML via the action parameter.
Published: Dec 31, 2004
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| board_power | board_power | 2.04pf |
GitHub Security Advisory GHSA-m3pw-p3vj-wr9w
Cross-site scripting (XSS) vulnerability in icq.cgi in Board Power 2.04PF allows remote attackers...
References (8)
- http://archives.neohapsis.com/archives/fulldisclosure/2004-07/0642.html Exploit
- http://www.kb.cert.org/vuls/id/744590 US Government Resource
- http://www.securityfocus.com/bid/10734 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16698
- http://archives.neohapsis.com/archives/fulldisclosure/2004-07/0642.html Exploit
- http://www.kb.cert.org/vuls/id/744590 US Government Resource
- http://www.securityfocus.com/bid/10734 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16698
Risk Scores
CVSS Score
9.3 / 10
EPSS Score
6.57%
Top 7% most likely to be exploited
Threat Score
39.2 / 100
Data Sources
NVD
EPSS
GitHub