Back

CVE-2005-4375

Cross-site scripting (XSS) vulnerability in Amaxus 3 and earlier allows remote attackers to inject arbitrary web script or HTML via the change parameter. NOTE: it is possible that this is resultant from CVE-2005-4376.

Published: Dec 20, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
box_uk amaxus *

GitHub Security Advisory GHSA-gc4c-2wvp-mgjx

Cross-site scripting (XSS) vulnerability in Amaxus 3 and earlier allows remote attackers to...

Risk Scores

CVSS Score 4.3 / 10
EPSS Score 1.70%

Top 25% most likely to be exploited

Threat Score 17.7 / 100

Data Sources

NVD EPSS GitHub