CVE-2006-1097

Multiple cross-site scripting (XSS) vulnerabilities in Datenbank MOD 2.7 and earlier for Woltlab Burning Board allow remote attackers to inject arbitrary web script or HTML via the fileid parameter to (1) info_db.php or (2) database.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:datenbank_module:datenbank_module:mod_2.7:*:*:*:*:*:*:*

History

21 Nov 2024, 00:08

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/fulldisclosure/2006-03/0033.html - () http://archives.neohapsis.com/archives/fulldisclosure/2006-03/0033.html -
References () http://www.nukedx.com/?viewdoc=17 - Exploit, Vendor Advisory () http://www.nukedx.com/?viewdoc=17 - Exploit, Vendor Advisory
References () http://www.osvdb.org/23809 - () http://www.osvdb.org/23809 -
References () http://www.osvdb.org/23811 - () http://www.osvdb.org/23811 -
References () http://www.securityfocus.com/archive/1/426583 - Exploit, Vendor Advisory () http://www.securityfocus.com/archive/1/426583 - Exploit, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/25004 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/25004 -

Information

Published : 2006-03-09 13:06

Updated : 2024-11-21 00:08


NVD link : CVE-2006-1097

Mitre link : CVE-2006-1097

CVE.ORG link : CVE-2006-1097


JSON object : View

Products Affected

datenbank_module

  • datenbank_module