4.3
CVE-2006-0210
- EPSS 1.95%
- Veröffentlicht 14.01.2006 01:03:00
- Zuletzt bearbeitet 16.06.2026 22:20:06
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in index.php in Interspire TrackPoint NX before 0.1 allows remote attackers to inject arbitrary web script or HTML via the username parameter when using the Login page.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.95% | 0.776 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://secunia.com/advisories/18445
http://www.interspire.com/forum/showthread.php?p=29606
http://www.osvdb.org/22377
http://www.securityfocus.com/archive/1/421740/100/0/threaded
http://www.securityfocus.com/bid/16214
http://www.vupen.com/english/advisories/2006/0175
https://exchange.xforce.ibmcloud.com/vulnerabilities/24112