CVE-2006-1918

Multiple cross-site scripting (XSS) vulnerabilities in Papoo 2.1.5 allow remote attackers to inject arbitrary web script or HTML via the menuid parameter to (1) index.php or (2) forum.php, or the (3) reporeid_print parameter to print.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:papoo:papoo:2.1.5:*:*:*:*:*:*:*

History

21 Nov 2024, 00:10

Type Values Removed Values Added
References () http://securitytracker.com/id?1015939 - () http://securitytracker.com/id?1015939 -
References () http://www.securityfocus.com/archive/1/431009/100/0/threaded - () http://www.securityfocus.com/archive/1/431009/100/0/threaded -
References () http://www.securityfocus.com/bid/17530 - () http://www.securityfocus.com/bid/17530 -

Information

Published : 2006-04-20 18:06

Updated : 2024-11-21 00:10


NVD link : CVE-2006-1918

Mitre link : CVE-2006-1918

CVE.ORG link : CVE-2006-1918


JSON object : View

Products Affected

papoo

  • papoo
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')