4.3
CVE-2006-1679
- EPSS 4.06%
- Veröffentlicht 11.04.2006 00:02:00
- Zuletzt bearbeitet 16.06.2026 22:23:25
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in modules/online.php in Jupiter CMS 1.1.5 allows remote attackers to inject arbitrary web script or HTML via the layout parameter to index.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jupiter Cms ≫ Jupiter Cms Version1.1.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.06% | 0.893 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://secunia.com/advisories/19582
http://www.securityfocus.com/archive/1/430391/100/0/threaded
http://www.securityfocus.com/bid/17405
http://www.vupen.com/english/advisories/2006/1302
https://exchange.xforce.ibmcloud.com/vulnerabilities/25700