4.3
CVE-2006-0689
- EPSS 1.3%
- Veröffentlicht 15.02.2006 11:06:00
- Zuletzt bearbeitet 16.06.2026 22:21:05
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in the Registration Form in TTS Time Tracking Software 3.0 allows remote attackers to inject arbitrary web script or HTML via the UserName parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Scheduling Management.Com ≫ Time Tracking Software Version3.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.3% | 0.667 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://secunia.com/advisories/18854
http://www.evuln.com/vulns/69/summary.html
http://www.securityfocus.com/archive/1/425505/100/0/threaded
http://www.securityfocus.com/bid/16630
http://www.vupen.com/english/advisories/2006/0524
https://exchange.xforce.ibmcloud.com/vulnerabilities/24572