{"api_version":"1","generated_at":"2026-07-23T06:10:32+00:00","cve":"CVE-2005-4333","urls":{"html":"https://cve.report/CVE-2005-4333","api":"https://cve.report/api/cve/CVE-2005-4333.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-4333","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-4333"},"summary":{"title":"CVE-2005-4333","description":"Multiple cross-site scripting (XSS) vulnerabilities in Binary Board System (BBS) 0.2.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) inreplyto, (2) article, and (3) board parameters to reply.pl, (4) branch, (5) board, and (6) stats.pl parameters to (b) stats.pl, and (7) board parameter to (c) toc.pl.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-12-17 11:03:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.3","severity":"","vector":"AV:N/AC:M/Au:N/C:N/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.osvdb.org/21894","name":"http://www.osvdb.org/21894","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.osvdb.org/21895","name":"http://www.osvdb.org/21895","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.securityfocus.com/bid/15913","name":"http://www.securityfocus.com/bid/15913","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"Binary Board System Multiple Cross-Site Scripting Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://pridels0.blogspot.com/2005/12/binary-board-system-xss-vuln.html","name":"http://pridels0.blogspot.com/2005/12/binary-board-system-xss-vuln.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"- UNSECURED SYSTEMS -: Binary Board System XSS vuln.","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/21893","name":"http://www.osvdb.org/21893","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-4333","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-4333","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"4333","vulnerable":"1","versionEndIncluding":"0.2.5","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"binary-concepts","cpe5":"binary_board_system","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T23:38:51.947Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"21895","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/21895"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://pridels0.blogspot.com/2005/12/binary-board-system-xss-vuln.html"},{"name":"21894","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/21894"},{"name":"21893","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/21893"},{"name":"15913","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/15913"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-12-16T00:00:00.000Z","descriptions":[{"lang":"en","value":"Multiple cross-site scripting (XSS) vulnerabilities in Binary Board System (BBS) 0.2.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) inreplyto, (2) article, and (3) board parameters to reply.pl, (4) branch, (5) board, and (6) stats.pl parameters to (b) stats.pl, and (7) board parameter to (c) toc.pl."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2006-01-04T10:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"21895","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/21895"},{"tags":["x_refsource_MISC"],"url":"http://pridels0.blogspot.com/2005/12/binary-board-system-xss-vuln.html"},{"name":"21894","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/21894"},{"name":"21893","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/21893"},{"name":"15913","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/15913"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-4333","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Multiple cross-site scripting (XSS) vulnerabilities in Binary Board System (BBS) 0.2.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) inreplyto, (2) article, and (3) board parameters to reply.pl, (4) branch, (5) board, and (6) stats.pl parameters to (b) stats.pl, and (7) board parameter to (c) toc.pl."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"21895","refsource":"OSVDB","url":"http://www.osvdb.org/21895"},{"name":"http://pridels0.blogspot.com/2005/12/binary-board-system-xss-vuln.html","refsource":"MISC","url":"http://pridels0.blogspot.com/2005/12/binary-board-system-xss-vuln.html"},{"name":"21894","refsource":"OSVDB","url":"http://www.osvdb.org/21894"},{"name":"21893","refsource":"OSVDB","url":"http://www.osvdb.org/21893"},{"name":"15913","refsource":"BID","url":"http://www.securityfocus.com/bid/15913"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-4333","datePublished":"2005-12-17T11:00:00.000Z","dateReserved":"2005-12-17T00:00:00.000Z","dateUpdated":"2024-08-07T23:38:51.947Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-12-17 11:03:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:binary-concepts:binary_board_system:*:*:*:*:*:*:*:*","versionEndIncluding":"0.2.5","matchCriteriaId":"833A0392-2E34-4F1E-AAF7-00D669CDF363"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"4333","Ordinal":"1","Title":"CVE-2005-4333","CVE":"CVE-2005-4333","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"4333","Ordinal":"1","NoteData":"Multiple cross-site scripting (XSS) vulnerabilities in Binary Board System (BBS) 0.2.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) inreplyto, (2) article, and (3) board parameters to reply.pl, (4) branch, (5) board, and (6) stats.pl parameters to (b) stats.pl, and (7) board parameter to (c) toc.pl.","Type":"Description","Title":"CVE-2005-4333"},{"CveYear":"2005","CveId":"4333","Ordinal":"2","NoteData":"2005-12-17","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"4333","Ordinal":"3","NoteData":"2006-01-04","Type":"Other","Title":"Modified"}]}}}