CVE-2006-1750

Multiple cross-site scripting (XSS) vulnerabilities in index.php in Autogallery 0.41 allow remote attackers to inject arbitrary web script or HTML via the (1) pic or (2) show parameters.
Configurations

Configuration 1 (hide)

cpe:2.3:a:jmb_software:autogallery:0.41:*:*:*:*:*:*:*

History

21 Nov 2024, 00:09

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/fulldisclosure/2006-04/0220.html - () http://archives.neohapsis.com/archives/fulldisclosure/2006-04/0220.html -
References () http://secunia.com/advisories/19629 - Vendor Advisory () http://secunia.com/advisories/19629 - Vendor Advisory
References () http://www.elitemexico.org/12.txt - () http://www.elitemexico.org/12.txt -
References () http://www.securityfocus.com/bid/17480 - () http://www.securityfocus.com/bid/17480 -
References () http://www.vupen.com/english/advisories/2006/1328 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/1328 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/25756 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/25756 -

Information

Published : 2006-04-12 22:02

Updated : 2024-11-21 00:09


NVD link : CVE-2006-1750

Mitre link : CVE-2006-1750

CVE.ORG link : CVE-2006-1750


JSON object : View

Products Affected

jmb_software

  • autogallery
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')