CVE-2006-1818

Multiple cross-site scripting (XSS) vulnerabilities in warforge.NEWS 1.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly including the (1) first_name and (2) last_name parameter in myaccounts.php. NOTE: portions of these details were obtained from third party sources instead of the original disclosure.
Configurations

Configuration 1 (hide)

cpe:2.3:a:the_war_forge:warforge.news:1.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:09

Type Values Removed Values Added
References () http://evuln.com/vulns/125/summary.html - () http://evuln.com/vulns/125/summary.html -
References () http://www.securityfocus.com/archive/1/432104/100/0/threaded - () http://www.securityfocus.com/archive/1/432104/100/0/threaded -
References () http://www.securityfocus.com/bid/17520 - () http://www.securityfocus.com/bid/17520 -
References () http://www.vupen.com/english/advisories/2006/1359 - () http://www.vupen.com/english/advisories/2006/1359 -

Information

Published : 2006-04-18 10:02

Updated : 2024-11-21 00:09


NVD link : CVE-2006-1818

Mitre link : CVE-2006-1818

CVE.ORG link : CVE-2006-1818


JSON object : View

Products Affected

the_war_forge

  • warforge.news