Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2006-0958
StatusCandidate
DescriptionCross-site scripting (XSS) vulnerability in func.inc.php in ZoneO-Soft freeForum before 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the (1) name and (2) subject parameters.
SeverityLow
CVSS score2,3
CVSS vector(AV:R/AC:L/Au:NR/C:N/I:P/A:N/B:N)
PhaseAssigned (02.03.2006)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2006-0958
ReferencesBID : 16877
 BUGTRAQ : 20060310 [eVuln] FreeForum PHP Code Execution & Multiple XSS Vulnerabilities
 CONFIRM : http://soft.zoneo.net/freeForum/changes.php
 FRSIRT : ADV-2006-0759
 MISC : http://evuln.com/vulns/89/summary.html
 SECUNIA : 19020
 XF : freeforum-func-xss(24925)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server