PT-2006-3893 · Vscal+1 · Very Simple Car Lister+1

Publicado

2006-06-13

·

Atualizado

2018-10-18

·

CVE-2006-2986

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions very Simple Car Lister (vSCAL) version 1.0 very simple Realty Lister (vsREAL) version 1.0
Description The issue allows remote attackers to inject arbitrary web script or HTML. This can be achieved via the lid parameter in "index.php" or the title parameter in "myslideshow.php".
Recommendations For very Simple Car Lister (vSCAL) version 1.0, avoid using the lid parameter in "index.php" until the issue is resolved. For very simple Realty Lister (vsREAL) version 1.0, avoid using the title parameter in "myslideshow.php" until the issue is resolved.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-2986

Produtos afetados

Very Simple Car Lister
Very Simple Realty Lister