4.3
CVE-2006-3927
- EPSS 1.89%
- Veröffentlicht 31.07.2006 21:04:00
- Zuletzt bearbeitet 16.06.2026 22:28:05
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in auctionsearch.php in PhpProBid 5.24 allows remote attackers to inject arbitrary web script or HTML via the advsrc parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Php Pro Bid ≫ Php Pro Bid Version5.24
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.89% | 0.768 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://archives.neohapsis.com/archives/bugtraq/2006-07/0474.html
http://secunia.com/advisories/21201
http://securityreason.com/securityalert/1298
http://securitytracker.com/id?1016595
http://www.securityfocus.com/bid/19158
http://www.osvdb.org/27544
https://exchange.xforce.ibmcloud.com/vulnerabilities/28030