Secunia Logo
 
CVE Reference: CVE-2006-7059
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-7059

Description:
Multiple cross-site scripting (XSS) vulnerabilities in Scriptsez.net E-Dating System allow remote attackers to inject arbitrary web script or HTML via encoded entities (&#0000039) in IMG tags to (1) messages, (2) profile fields, or (3) the id parameter in a dologin operation to cindex.php.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/27102

SREASON
  http://securityreason.com/securityalert/2300

SAID
  Secunia Advisory: SA20535

BUGTRAQ
  http://archives.neohapsis.com/archives/bugtraq/2006-06/0067.html

BID
  18336


Return to the previous page.