CVE-2006-3261

Cross-site scripting (XSS) vulnerability in Trend Micro Control Manager (TMCM) 3.5 allows remote attackers to inject arbitrary web script or HTML via the username field on the login page, which is not properly sanitized before being displayed in the error log.
Configurations

Configuration 1 (hide)

cpe:2.3:a:trend_micro:control_manager:3.5:*:*:*:*:*:*:*

History

21 Nov 2024, 00:13

Type Values Removed Values Added
References () http://secunia.com/advisories/20794 - () http://secunia.com/advisories/20794 -
References () http://securityreason.com/securityalert/1159 - () http://securityreason.com/securityalert/1159 -
References () http://securitytracker.com/id?1016372 - () http://securitytracker.com/id?1016372 -
References () http://www.securityfocus.com/archive/1/438158/100/0/threaded - () http://www.securityfocus.com/archive/1/438158/100/0/threaded -
References () http://www.securityfocus.com/bid/18619 - () http://www.securityfocus.com/bid/18619 -
References () http://www.vupen.com/english/advisories/2006/2526 - () http://www.vupen.com/english/advisories/2006/2526 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/27388 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/27388 -

Information

Published : 2006-06-27 21:05

Updated : 2024-11-21 00:13


NVD link : CVE-2006-3261

Mitre link : CVE-2006-3261

CVE.ORG link : CVE-2006-3261


JSON object : View

Products Affected

trend_micro

  • control_manager