Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Uzuzz

#51556of 53,622
4.3Total CVSS
Vulnerabilities · 1
PT-2006-3913
4.3
2006-06-13
Nullsoft · Shoutcast · CVE-2006-3007
**Name of the Vulnerable Software and Affected Versions** SHOUTcast version 1.9.5 **Description** The issue allows remote attackers to inject arbitrary HTML or web script via the DJ fields, including `Description`, `URL`, `Genre`, `AIM`, and `ICQ`. This can lead to cross-site scripting (XSS) attacks. **Recommendations** For SHOUTcast version 1.9.5, consider restricting input for the DJ fields `Description`, `URL`, `Genre`, `AIM`, and `ICQ` to prevent arbitrary HTML or web script injection until a patch is available.