Cross-site scripting (XSS) vulnerability in DSChat 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the chatbox, probably involving the ctext parameter to send.php.
References
Configurations
History
21 Nov 2024, 00:11
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/20258 - Vendor Advisory | |
References | () http://securityreason.com/securityalert/958 - | |
References | () http://securitytracker.com/id?1016148 - | |
References | () http://www.osvdb.org/25734 - | |
References | () http://www.securityfocus.com/archive/1/434821/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/18084 - Patch | |
References | () http://www.vupen.com/english/advisories/2006/1961 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/26641 - |
Information
Published : 2006-05-25 10:02
Updated : 2024-11-21 00:11
NVD link : CVE-2006-2605
Mitre link : CVE-2006-2605
CVE.ORG link : CVE-2006-2605
JSON object : View
Products Affected
dschat
- dschat
CWE