Secunia Logo
 
CVE Reference: CVE-2006-1222
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-1222

Description:
Multiple cross-site scripting (XSS) vulnerabilities in zeroboard 4.1 pl7 allows allow remote attackers to inject arbitrary web script or HTML via the (1) memo box title, (2) user email, and (3) homepage fields.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/25212

SAID
  Secunia Advisory: SA19214

OSVDB
  23847

MISC
  http://www.inetcop.org/upfiles/33INCSA.2006-0x82-029-zeroboard.pdf

FULLDISC
  http://lists.grok.org.uk/pipermail/full-disclosure/2006-March/042872.html

CONFIRM
  http://www.nzeo.com/bbs/zboard.php?id=cgi_bugreport2&no=5406

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/427466/100/0/threaded

BID
  17075


Return to the previous page.