CVE-2006-3043

Cross-site scripting (XSS) vulnerability in search.cfm in CreaFrameXe (CFXe) CMS 2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the voltext_suche parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cfxe-cms:cfxe-cms:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:12

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2006-06/0149.html - () http://archives.neohapsis.com/archives/bugtraq/2006-06/0149.html -
References () http://secunia.com/advisories/20582 - () http://secunia.com/advisories/20582 -
References () http://securitytracker.com/id?1016277 - () http://securitytracker.com/id?1016277 -
References () http://www.majorsecurity.de/advisory/major_rls14.txt - Exploit, Vendor Advisory () http://www.majorsecurity.de/advisory/major_rls14.txt - Exploit, Vendor Advisory
References () http://www.vupen.com/english/advisories/2006/2278 - () http://www.vupen.com/english/advisories/2006/2278 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/27052 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/27052 -

Information

Published : 2006-06-16 10:02

Updated : 2025-04-03 01:03


NVD link : CVE-2006-3043

Mitre link : CVE-2006-3043

CVE.ORG link : CVE-2006-3043


JSON object : View

Products Affected

cfxe-cms

  • cfxe-cms