2.6
CVE-2006-1899
- EPSS 1.29%
- Veröffentlicht 20.04.2006 10:02:00
- Zuletzt bearbeitet 16.06.2026 22:23:54
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple cross-site scripting (XSS) vulnerabilities in dev Neuron Blog 1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) website parameters.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dev ≫ Neuron Blog Version1.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.29% | 0.665 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:N/I:P/A:N
|
http://secunia.com/advisories/19703
http://securitytracker.com/id?1015960
http://www.securityfocus.com/archive/1/431131/100/0/threaded
http://www.securityfocus.com/bid/17552
http://www.vupen.com/english/advisories/2006/1406
https://exchange.xforce.ibmcloud.com/vulnerabilities/25913