CVE-2006-2641

** UNVERIFIABLE ** NOTE: this issue does not contain any verifiable or actionable details. Cross-site scripting (XSS) vulnerability in John Frank Asset Manager (AssetMan) 2.4a and earlier allows remote attackers to inject arbitrary web script or HTML via "any of its input." NOTE: the original disclosure is based on vague researcher claims without vendor acknowledgement; therefore this identifier cannot be linked with any future identifier that identifies more specific vectors. Perhaps this should not be included in CVE.
Configurations

Configuration 1 (hide)

cpe:2.3:a:john_frank:asset_manager:2.4a:*:*:*:*:*:*:*

History

21 Nov 2024, 00:11

Type Values Removed Values Added
References () http://secunia.com/advisories/20285 - Vendor Advisory () http://secunia.com/advisories/20285 - Vendor Advisory
References () http://securityreason.com/securityalert/979 - () http://securityreason.com/securityalert/979 -
References () http://www.securityfocus.com/archive/1/435139/100/0/threaded - () http://www.securityfocus.com/archive/1/435139/100/0/threaded -
References () http://www.securityfocus.com/bid/18131 - () http://www.securityfocus.com/bid/18131 -
References () http://www.vupen.com/english/advisories/2006/2023 - () http://www.vupen.com/english/advisories/2006/2023 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/26702 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/26702 -

Information

Published : 2006-05-30 10:02

Updated : 2025-04-03 01:03


NVD link : CVE-2006-2641

Mitre link : CVE-2006-2641

CVE.ORG link : CVE-2006-2641


JSON object : View

Products Affected

john_frank

  • asset_manager