Multiple cross-site scripting (XSS) vulnerabilities in Ringlink 3.2 allow remote attackers to inject arbitrary web script or HTML via a JavaScript URI in the SRC attribute of an IMG element, and possibly other manipulations, in the ringid parameter in (1) next.cgi, (2) stats.cgi, or (3) list.cgi.
References
Configurations
History
No history.
Information
Published : 2006-06-13 01:02
Updated : 2024-02-28 10:42
NVD link : CVE-2006-2991
Mitre link : CVE-2006-2991
CVE.ORG link : CVE-2006-2991
JSON object : View
Products Affected
ringlink
- ringlink
CWE