4.3
CVE-2006-0735
- EPSS 2.83%
- Veröffentlicht 16.02.2006 11:02:00
- Zuletzt bearbeitet 16.06.2026 22:21:10
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in BBcode.pm in M. Blom HTML::BBCode 1.04 and earlier, as used in products such as My Blog before 1.65, allows remote attackers to inject arbitrary Javascript via a javascript URI in an (1) img or (2) url BBcode tag.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Fuzzymonkey ≫ My Blog Version1.0
Fuzzymonkey ≫ My Blog Version1.2
Fuzzymonkey ≫ My Blog Version1.3
Fuzzymonkey ≫ My Blog Version1.4
Fuzzymonkey ≫ My Blog Version1.5
Fuzzymonkey ≫ My Blog Version1.6
Fuzzymonkey ≫ My Blog Version1.21
Fuzzymonkey ≫ My Blog Version1.22
Fuzzymonkey ≫ My Blog Version1.23
Fuzzymonkey ≫ My Blog Version1.31
Fuzzymonkey ≫ My Blog Version1.51
Fuzzymonkey ≫ My Blog Version1.52
Fuzzymonkey ≫ My Blog Version1.61
Fuzzymonkey ≫ My Blog Version1.62
Fuzzymonkey ≫ My Blog Version1.63
Fuzzymonkey ≫ My Blog Version1.64
M Blom ≫ Html-bbcode Version1.03
M Blom ≫ Html-bbcode Version1.04
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.83% | 0.848 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://evuln.com/vulns/79/summary.html
http://evuln.com/vulns/80/summary.html
http://fuzzymonkey.net/forum/viewtopic.php?t=856
http://menno.b10m.net/perl/HTML-BBCode/Changes
http://menno.b10m.net/perl/dists/HTML-BBCode-1.05.tar.gz
http://secunia.com/advisories/18905
http://secunia.com/advisories/18925
http://www.evuln.com/vulns/80/summary.html
http://www.securityfocus.com/archive/1/425087/100/0/threaded
http://www.securityfocus.com/archive/1/425113/100/0/threaded
http://www.securityfocus.com/bid/16659
http://www.vupen.com/english/advisories/2006/0614
http://www.vupen.com/english/advisories/2006/0642
https://exchange.xforce.ibmcloud.com/vulnerabilities/24668