2.6
CVE-2006-3230
- EPSS 2.09%
- Veröffentlicht 27.06.2006 10:05:00
- Zuletzt bearbeitet 16.06.2026 22:26:40
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in index.tmpl in Azureus Tracker 2.4.0.2 and earlier (Java BitTorrent Client Tracker) allows remote attackers to inject arbitrary web script or HTML via the search parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Azureus Tracker ≫ Azureus Tracker Version2.2.0.2
Azureus Tracker ≫ Azureus Tracker Version2.3.0.6
Azureus Tracker ≫ Azureus Tracker Version2.4.0.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.09% | 0.792 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:N/I:P/A:N
|
http://pridels0.blogspot.com/2006/06/azureus-2402-xss-vuln.html
http://secunia.com/advisories/20755
http://securitytracker.com/id?1016357
http://www.osvdb.org/26768
http://www.securityfocus.com/bid/18596
http://www.vupen.com/english/advisories/2006/2484
https://exchange.xforce.ibmcloud.com/vulnerabilities/27300