Washington University · Pubcookie · CVE-2006-1393
**Name of the Vulnerable Software and Affected Versions**
University of Washington Pubcookie versions 1.x, 3.0.0, 3.1.0, 3.1.1, 3.2 through 3.2.1b, 3.3 through 3.3.0a
**Description**
The issue concerns multiple cross-site scripting (XSS) vulnerabilities in the mod pubcookie Apache application server module. These vulnerabilities allow remote attackers to inject arbitrary web script or HTML.
**Recommendations**
For versions 1.x, 3.0.0, 3.1.0, 3.1.1, update to version 3.2.1b or later.
For versions 3.2 through 3.2.1b, update to version 3.2.1b or later.
For versions 3.3 through 3.3.0a, update to version 3.3.0a or later.