Multiple cross-site scripting (XSS) vulnerabilities in eyeOS before 0.9.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving (1) eyeNav and (2) system/baixar.php.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:17
Type | Values Removed | Values Added |
---|---|---|
References | () http://eyeos.blogspot.com/2006/09/eyeos-091-released.html - Patch | |
References | () http://secunia.com/advisories/22117 - Patch, Vendor Advisory | |
References | () http://sourceforge.net/project/shownotes.php?group_id=145027&release_id=450490 - Patch | |
References | () http://www.securityfocus.com/bid/20213 - Patch | |
References | () http://www.vupen.com/english/advisories/2006/3780 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/29190 - |
Information
Published : 2006-09-28 00:07
Updated : 2024-11-21 00:17
NVD link : CVE-2006-5071
Mitre link : CVE-2006-5071
CVE.ORG link : CVE-2006-5071
JSON object : View
Products Affected
eyeos_project
- eyeos
CWE