2.6

CVE-2006-3769

Exploit
Multiple cross-site scripting (XSS) vulnerabilities in Top XL 1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) pass and (2) pass2 parameters in (a) add.php or the (3) id parameter in (b) members/index.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Top XlTop Xl Version <= 1.1
Top XlTop Xl Version1.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.83% 0.76
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 2.6 4.9 2.9
AV:N/AC:H/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/21145
Vendor Advisory
http://securityreason.com/securityalert/1267
http://securitytracker.com/id?1016548
http://www.majorsecurity.de/advisory/major_rls22.txt
Vendor Advisory
Exploit
http://www.osvdb.org/27413
http://www.osvdb.org/27414
http://www.securityfocus.com/archive/1/440652/100/0/threaded
http://www.securityfocus.com/archive/1/440889/100/100/threaded
http://www.securityfocus.com/bid/19098
Exploit
http://www.vupen.com/english/advisories/2006/2914
https://exchange.xforce.ibmcloud.com/vulnerabilities/27880