6.8

CVE-2006-6363

Exploit
Cross-site scripting (XSS) vulnerability in admin.pl in BlueSocket Secure Controller (BSC) before 5.2, or without 5.1.1-BluePatch, allows remote attackers to inject arbitrary web script or HTML via the ad_name parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
BluesocketBsc 2100 Version5.0
BluesocketBsc 2100 Version5.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.31% 0.811
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/23238
Patch
Vendor Advisory
http://securityreason.com/securityalert/1991
http://www.securityfocus.com/archive/1/453412/100/0/threaded
http://www.securityfocus.com/bid/21419
Patch
Exploit
http://www.vupen.com/english/advisories/2006/4844
https://exchange.xforce.ibmcloud.com/vulnerabilities/30735