Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-0532

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2006-0532
Last Modified 07 Mar 2011 09:30:15
Published 03 Feb 2006 07:06:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2006-0532

Summary

Cross-site scripting (XSS) vulnerability in resultat.asp in SoftMaker Shop allows remote attackers to inject arbitrary web script or HTML via a strSok parameter containing a javascript: URI in an IMG SRC attribute.

Vulnerable Systems

Application

  • Media2 Cms Shop


References

XF - softmakershop-image-xss(24451)

VUPEN - ADV-2006-0434

BID - 16471

BUGTRAQ - 20060201 SoftMaker Shop is vulnerable to XSS

OSVDB - 22911

SECUNIA - 18683

SREASON - 400


Last Updated: 27 May 2016 10:41:42