Multiple cross-site scripting (XSS) vulnerabilities in Jay Eckles CGI Calendar 2.7 allow remote attackers to inject arbitrary web script or HTML via the year parameter in (1) index.cgi and (2) viewday.cgi.
References
Configurations
History
No history.
Information
Published : 2006-03-03 11:02
Updated : 2024-02-04 16:52
NVD link : CVE-2006-0980
Mitre link : CVE-2006-0980
CVE.ORG link : CVE-2006-0980
JSON object : View
Products Affected
jay_eckles
- cgi_calendar
CWE