2.6
CVE-2006-1842
- EPSS 1.29%
- Veröffentlicht 19.04.2006 16:06:00
- Zuletzt bearbeitet 16.06.2026 22:23:47
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in global.php in ShoutBOOK 1.1 allows remote attackers to inject arbitrary web script or HTML via the (1) NAME and (2) COMMENTS parameters.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cynical Games ≫ Shoutbook Version1.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.29% | 0.665 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:N/I:P/A:N
|
http://secunia.com/advisories/19704
http://securitytracker.com/id?1015958
http://www.securityfocus.com/archive/1/431130/100/0/threaded
http://www.securityfocus.com/bid/17548
http://www.vupen.com/english/advisories/2006/1385
https://exchange.xforce.ibmcloud.com/vulnerabilities/25862