6.8
CVE-2006-1913
- EPSS 2.78%
- Veröffentlicht 20.04.2006 18:06:00
- Zuletzt bearbeitet 16.06.2026 22:23:55
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in jax_guestbook.php in Jax Guestbook 3.1, 3.31, and 3.50 allows remote attackers to inject arbitrary web script or HTML via the page parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jax Scripts ≫ Jax Guestbook Version <= 3.50
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.78% | 0.845 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
http://kiki91.altervista.org/exploit/jax.txt
http://lostmon.blogspot.com/2005/08/jax-php-scripts-multiple.html
http://secunia.com/advisories/16337
http://secunia.com/advisories/19843
http://secunia.com/advisories/20110
http://www.osvdb.org/24991
http://www.securityfocus.com/bid/17560
http://www.vupen.com/english/advisories/2006/1800
https://exchange.xforce.ibmcloud.com/vulnerabilities/26448