PT-2006-2620 · Php · Phpselect

Publicado

2006-04-05

·

Atualizado

2018-10-18

·

CVE-2006-1622

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: PHPSelect (affected versions not specified)
Description: A cross-site scripting (XSS) issue allows remote attackers to inject arbitrary web script or HTML. This can be achieved via the description parameter to "linklist.php" and possibly other vectors involving "index.php" and "linksubmit.php".
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-1622

Produtos afetados

Phpselect