3.5

CVE-2006-0172

Exploit
Cross-site scripting (XSS) vulnerability in the file manager utility in Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to inject arbitrary web script or HTML in an uploaded page, which is published without a check for hostile scripting.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.1% 0.613
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 3.5 6.8 2.9
AV:N/AC:M/Au:S/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/18411
Vendor Advisory
http://www.securenetwork.it/advisories/sn-2006-01.html
Vendor Advisory
Exploit
http://www.securityfocus.com/archive/1/421392/100/0/threaded
http://www.securityfocus.com/bid/16195
Exploit
http://www.vupen.com/english/advisories/2006/0145
https://exchange.xforce.ibmcloud.com/vulnerabilities/24067