Cross-Site Scripting (XSS) Vulnerability in Musicmatch Jukebox 10.00.2047 and Earlier

Cross-Site Scripting (XSS) Vulnerability in Musicmatch Jukebox 10.00.2047 and Earlier

CVE-2005-1186 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

Musicmatch Jukebox 10.00.2047 and earlier adds the musicmatch.com domain to the Trusted Sites zone in Internet Explorer, which allows systems in the domain to conduct unauthorized activities, as demonstrated using cross-site scripting (XSS) attacks.

Learn more about our Web Application Penetration Testing UK.