CVE-2005-4161

** DISPUTED **

Multiple cross-site scripting (XSS) vulnerabilities in MilliScripts 1.4 redirect script allow remote attackers to inject arbitrary web script or HTML via the domainname parameter to register.php, and other unspecified vectors. NOTE: the vendor has disputed this issue, stating "No invalid input can reach the script."

Date published : 2005-12-11

http://www.securityfocus.com/bid/15792

http://www.securityfocus.com/archive/1/419070/100/0/threaded