Multiple cross-site scripting (XSS) vulnerabilities in Bugzero 4.3.1 and other versions allow remote attackers to inject arbitrary web script or HTML via the (1) msg parameter in query.jsp and (2) entryId parameter in edit.jsp.
References
Configurations
History
21 Nov 2024, 00:09
Type | Values Removed | Values Added |
---|---|---|
References | () http://pridels0.blogspot.com/2006/04/bugzero-xss-vuln.html - | |
References | () http://secunia.com/advisories/19492 - | |
References | () http://www.osvdb.org/24328 - | |
References | () http://www.osvdb.org/24329 - | |
References | () http://www.securityfocus.com/bid/17351 - | |
References | () http://www.vupen.com/english/advisories/2006/1195 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/25601 - |
Information
Published : 2006-04-02 21:04
Updated : 2024-11-21 00:09
NVD link : CVE-2006-1580
Mitre link : CVE-2006-1580
CVE.ORG link : CVE-2006-1580
JSON object : View
Products Affected
websina
- bugzero
CWE