Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-0859

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2006-0859
Last Modified 03 Oct 2011 12:00:00
Published 23 Feb 2006 06:02:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-0859

Summary

Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to post an admin comment to a guestbook entry via a certain modified form, possibly related to the nummer parameter.

Vulnerable Systems

Application

  • Michael Salzer Guestbox 0.6


References

SECUNIA - 18946

XF - guestbox-admin-access(24797)

VUPEN - ADV-2006-0675

BUGTRAQ - 20060302 Re: Guestbox XSS/an admin bypass

BUGTRAQ - 20060220 Guestbox XSS/an admin bypass

OSVDB - 23374


Last Updated: 27 May 2016 10:41:49