6.8
CVE-2006-2772
- EPSS 1.41%
- Veröffentlicht 02.06.2006 10:18:00
- Zuletzt bearbeitet 16.06.2026 22:25:43
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in add.asp in Hogstorps hogstorp guestbook 2.0 allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) email, and (3) headline parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hogstorps ≫ Hogstorp Guestbook Version2.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.41% | 0.692 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/20402
http://www.vupen.com/english/advisories/2006/2082
http://www.securityfocus.com/bid/18203
https://exchange.xforce.ibmcloud.com/vulnerabilities/26980