Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-1698

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2006-1698
Last Modified 07 Mar 2011 09:33:36
Published 11 Apr 2006 06:02:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2006-1698

Summary

Cross-site scripting (XSS) vulnerability in Matt Wright Guestbook 2.3.1 allows remote attackers to execute arbitrary web script or HTML via the (1) url, (2) city, (3) state, or (4) country parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information, although it is likely that they are the result of post-disclosure analysis.

Vulnerable Systems

Application

  • Matt Wright Guestbook 2.3.1


References

VUPEN - ADV-2006-1287

SECUNIA - 19586

XF - guestbook-guestbook-parameters-xss(25697)


Last Updated: 27 May 2016 10:42:10