Secunia Logo
 
CVE Reference: CVE-2006-2415
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-2415

Description:
Multiple cross-site scripting (XSS) vulnerabilities in FlexChat 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) username and (2) CFTOKEN parameter in (a) index.cfm and (3) CFTOKEN and (4) CFID parameter in (b) chat.cfm.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/26429

ST
  1016104

SAID
  Secunia Advisory: SA20101

OSVDB
  25504
  25505

MISC
  http://pridels.blogspot.com/2006/05/flexchat-xss.html


Return to the previous page.