CVE-2006-1324

Cross-site scripting (XSS) vulnerability in acp/lib/class_db_mysql.php in Woltlab Burning Board (wBB) 2.3.4 allows remote attackers to inject arbitrary web script or HTML via the errormsg parameter when a SQL error is generated.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:woltlab:burning_board:*:*:*:*:*:*:*:*
cpe:2.3:a:woltlab:burning_board:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:08

Type Values Removed Values Added
References () http://secunia.com/advisories/19293 - Vendor Advisory () http://secunia.com/advisories/19293 - Vendor Advisory
References () http://securityreason.com/securityalert/529 - () http://securityreason.com/securityalert/529 -
References () http://securityreason.com/securityalert/598 - () http://securityreason.com/securityalert/598 -
References () http://securitytracker.com/id?1015789 - () http://securitytracker.com/id?1015789 -
References () http://www.securityfocus.com/archive/1/428080 - () http://www.securityfocus.com/archive/1/428080 -
References () http://www.securityfocus.com/bid/17147 - () http://www.securityfocus.com/bid/17147 -
References () http://www.vupen.com/english/advisories/2006/1003 - () http://www.vupen.com/english/advisories/2006/1003 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/25313 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/25313 -

Information

Published : 2006-03-21 01:06

Updated : 2024-11-21 00:08


NVD link : CVE-2006-1324

Mitre link : CVE-2006-1324

CVE.ORG link : CVE-2006-1324


JSON object : View

Products Affected

woltlab

  • burning_board