Cross-site scripting (XSS) vulnerabilities in Easy-Content Forums 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) startletter parameter in userview.asp and the (2) catid parameter in topics.asp.
References
Configurations
History
21 Nov 2024, 00:11
Type | Values Removed | Values Added |
---|---|---|
References | () http://securityreason.com/securityalert/997 - | |
References | () http://www.securityfocus.com/archive/1/435140/100/0/threaded - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/26803 - |
Information
Published : 2006-05-31 10:06
Updated : 2024-11-21 00:11
NVD link : CVE-2006-2696
Mitre link : CVE-2006-2696
CVE.ORG link : CVE-2006-2696
JSON object : View
Products Affected
easy-content_forums
- easy-content_forums
CWE