← All CVEs

CVE-2011-1976

medium · 4.3

Cross-site scripting (XSS) vulnerability in the Report Viewer Control in Microsoft Visual Studio 2005 SP1 and Report Viewer 2005 SP1 allows remote attackers to inject arbitrary web script or HTML via a parameter in a data source, aka "Report Viewer Controls XSS Vulnerability."

4.3
CVSS
20.8%
EPSS (exploit prob.)
97th
EPSS percentile
2011-08-10
Published

AV:N/AC:M/Au:N/C:N/I:P/A:N

Weaknesses

CWE-79

Affected products

VendorProductAffected versions
microsoftreport_viewer2005
microsoftreport_viewer2005
microsoftvisual_studio2005

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2011-1976