|
CVE Reference: CVE-2006-2812
|
|
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.
|
|
Original Page at CVE MITRE:
CVE-2006-2812
|
|
Description:
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dominios Europa PICRATE (aka TAL RateMyPic) 1.0 allow remote attackers to inject arbitrary web script or HTML via a javascript URI in the SRC attribute of an IMG element in the (1) name (aka nick), (2) email, and (3) comment boxes; and via the (4) id parameter.
|
|
CVE Status:
Candidate
|
|
References:
SREASON http://securityreason.com/securityalert/1032
BUGTRAQ http://www.securityfocus.com/archive/1/archive/1/435599/100/0/threaded
|
|
|
Return to the previous page.
|