PT-2006-2401 · Washington University · University Of Washington Pubcookie

Ben Maurer

·

Published

2006-03-26

·

Updated

2017-07-20

·

CVE-2006-1392

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions University of Washington Pubcookie versions 3.0.0 through 3.1.1 University of Washington Pubcookie versions 3.2 through 3.2 before 3.2.1b University of Washington Pubcookie versions 3.3 before 3.3.0a
Description The issue allows remote attackers to inject arbitrary web script or HTML via unspecified inputs, which can lead to cross-site scripting (XSS) attacks.
Recommendations For University of Washington Pubcookie versions 3.0.0 through 3.1.1, update to version 3.2.1b or later. For University of Washington Pubcookie versions 3.2 through 3.2 before 3.2.1b, update to version 3.2.1b or later. For University of Washington Pubcookie versions 3.3 before 3.3.0a, update to version 3.3.0a or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-1392

Affected Products

University Of Washington Pubcookie