Multiple cross-site scripting (XSS) vulnerabilities in Jetbox CMS allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the OriginalImageData parameter to phpthumb.php.
References
Configurations
History
21 Nov 2024, 00:16
Type | Values Removed | Values Added |
---|---|---|
References | () http://securityreason.com/securityalert/1562 - | |
References | () http://www.securityfocus.com/archive/1/445652/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/19303 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/28842 - |
Information
Published : 2006-09-13 22:07
Updated : 2024-11-21 00:16
NVD link : CVE-2006-4739
Mitre link : CVE-2006-4739
CVE.ORG link : CVE-2006-4739
JSON object : View
Products Affected
jetbox
- jetbox_cms
CWE