Cross-site scripting (XSS) vulnerability in iFoto 0.20, and possibly other versions before 0.50, allows remote attackers to inject arbitrary HTML or web script via a base64-encoded file parameter.
References
Configurations
History
No history.
Information
Published : 2006-06-13 10:02
Updated : 2024-02-04 16:52
NVD link : CVE-2006-3006
Mitre link : CVE-2006-3006
CVE.ORG link : CVE-2006-3006
JSON object : View
Products Affected
ifoto
- ifoto
CWE