{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-18T04:19:51.074","vulnerabilities":[{"cve":{"id":"CVE-2005-4409","sourceIdentifier":"cve@mitre.org","published":"2005-12-20T11:03:00.000","lastModified":"2026-04-16T00:27:16.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cross-site scripting (XSS) vulnerability in MMBase 1.7.4 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters."}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.5.1:*:*:*:*:*:*:*","matchCriteriaId":"066FD7CE-8472-4A1A-8766-B460D8EBBDDC"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.6.0:*:*:*:*:*:*:*","matchCriteriaId":"D7076AC8-C7EB-49DD-A0CB-DC0293A36DED"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"85DD7BCF-60BD-4E82-90B3-563AF96FCB82"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.6.2:*:*:*:*:*:*:*","matchCriteriaId":"524C9327-B787-4470-B701-67CC10469B6C"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.6.3:*:*:*:*:*:*:*","matchCriteriaId":"EB75C3F1-CB67-4937-803E-CC337D17BADB"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.6.4:*:*:*:*:*:*:*","matchCriteriaId":"B40E338E-CB83-40F8-9E43-6FF15E7805E3"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.6.5:*:*:*:*:*:*:*","matchCriteriaId":"865A6411-846A-4B85-B8F8-21CF1BD7C895"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.7.0:*:*:*:*:*:*:*","matchCriteriaId":"3E1DFD79-E9F9-430A-80CC-0F34B97FF809"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.7.0_rc1:*:*:*:*:*:*:*","matchCriteriaId":"0C7FA8D2-4213-4418-BB45-FC96473285FB"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.7.0_rc2:*:*:*:*:*:*:*","matchCriteriaId":"AFD0F3B8-3099-4EAA-91F2-A9CB9DDA0A33"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.7.0_rc3:*:*:*:*:*:*:*","matchCriteriaId":"45401494-4287-43CD-B3DE-03A448B8D521"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.7.1:*:*:*:*:*:*:*","matchCriteriaId":"53CDA290-C76B-4C44-9E53-735ECA7F64FF"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.7.2:*:*:*:*:*:*:*","matchCriteriaId":"2264499A-2C58-471F-9BBB-33C936B02522"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.7.3:*:*:*:*:*:*:*","matchCriteriaId":"C4D533CA-82F1-4210-941F-ECA34A7A67C4"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.7.4:*:*:*:*:*:*:*","matchCriteriaId":"ACEEECE9-9B37-446F-B92C-80C76E82500C"},{"vulnerable":true,"criteria":"cpe:2.3:a:mmbase:mmbase:1.7.4_rc1:*:*:*:*:*:*:*","matchCriteriaId":"E0A49DA5-1B86-43C0-941B-59200408F157"}]}]}],"references":[{"url":"http://pridels0.blogspot.com/2005/12/mmbase-xss-vuln.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/21868","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/15955","source":"cve@mitre.org"},{"url":"http://pridels0.blogspot.com/2005/12/mmbase-xss-vuln.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/21868","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/15955","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}