6.8
CVE-2006-4608
- EPSS 4.86%
- Veröffentlicht 07.09.2006 00:04:00
- Zuletzt bearbeitet 16.06.2026 22:29:26
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple cross-site scripting (XSS) vulnerabilities in Longino Jacome php-Revista 1.1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) cadena parameter in busqueda.php and the (2) email parameter in lista.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Longino ≫ Jacome Php-revista Version1.1.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.86% | 0.909 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/21738
http://securityreason.com/securityalert/1499
http://www.attrition.org/pipermail/vim/2009-April/002167.html
http://www.securityfocus.com/archive/1/445007/100/0/threaded
http://www.securityfocus.com/archive/1/502637/100/0/threaded
http://www.securityfocus.com/bid/19818
https://www.exploit-db.com/exploits/8425
http://www.osvdb.org/28450