4.3
CVE-2006-2049
- EPSS 1.39%
- Veröffentlicht 26.04.2006 20:06:00
- Zuletzt bearbeitet 16.06.2026 22:24:14
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to inject arbitrary web script or HTML via the az parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dcscripts ≫ Dcforumlite Version3.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.39% | 0.688 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://secunia.com/advisories/19815
http://securityreason.com/securityalert/792
http://www.osvdb.org/24988
http://www.securityfocus.com/archive/1/432010/100/0/threaded
http://www.securityfocus.com/bid/17697
http://www.vupen.com/english/advisories/2006/1532
https://exchange.xforce.ibmcloud.com/vulnerabilities/26083