4.3
CVE-2006-1487
- EPSS 1.88%
- Veröffentlicht 29.03.2006 02:02:00
- Zuletzt bearbeitet 16.06.2026 22:22:46
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in ActiveCampaign SupportTrio 2.50.2 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the KnowledgeBase search module.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Activecampaign ≫ Supporttrio Version2.50.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.88% | 0.768 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://pridels0.blogspot.com/2006/03/activecampaign-supporttrio-25-vuln.html
http://secunia.com/advisories/19431
http://www.osvdb.org/24192
http://www.securityfocus.com/bid/17276
http://www.vupen.com/english/advisories/2006/1126
https://exchange.xforce.ibmcloud.com/vulnerabilities/25495