Cross-site scripting (XSS) vulnerability in TigerTom TTCalc 1.0 allows remote attackers to inject arbitrary web script or HTML via the year parameter in (1) loan.php and (2) mortgage.php.
References
Configurations
History
21 Nov 2024, 00:13
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/20952 - Vendor Advisory | |
References | () http://www.osvdb.org/27035 - | |
References | () http://www.osvdb.org/27036 - | |
References | () http://www.securityfocus.com/archive/1/439208/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/18844 - | |
References | () http://www.vupen.com/english/advisories/2006/2692 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/27563 - |
Information
Published : 2006-07-07 00:05
Updated : 2024-11-21 00:13
NVD link : CVE-2006-3428
Mitre link : CVE-2006-3428
CVE.ORG link : CVE-2006-3428
JSON object : View
Products Affected
tigertom_scripts
- ttcalc_script
CWE