Multiple cross-site scripting (XSS) vulnerabilities in news.php in vscripts (aka Kuba Kunkiewicz) VNews 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) autorkomentarza and (2) tresckomentarza parameters.
References
Configurations
History
21 Nov 2024, 00:09
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/19435 - | |
References | () http://www.evuln.com/vulns/112 - | |
References | () http://www.osvdb.org/24275 - | |
References | () http://www.securityfocus.com/archive/1/430674/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/17317 - | |
References | () http://www.vupen.com/english/advisories/2006/1173 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/25530 - |
Information
Published : 2006-03-30 11:02
Updated : 2024-11-21 00:09
NVD link : CVE-2006-1544
Mitre link : CVE-2006-1544
CVE.ORG link : CVE-2006-1544
JSON object : View
Products Affected
vscripts
- vnews
CWE