2.6
CVE-2006-4739
- EPSS 1.12%
- Veröffentlicht 13.09.2006 22:07:00
- Zuletzt bearbeitet 16.06.2026 22:29:42
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple cross-site scripting (XSS) vulnerabilities in Jetbox CMS allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the OriginalImageData parameter to phpthumb.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jetbox ≫ Jetbox Cms Version2.1_sr1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.12% | 0.62 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:N/I:P/A:N
|
http://www.securityfocus.com/bid/19303
http://securityreason.com/securityalert/1562
http://www.securityfocus.com/archive/1/445652/100/0/threaded
https://exchange.xforce.ibmcloud.com/vulnerabilities/28842