Multiple cross-site scripting (XSS) vulnerabilities in Jay Eckles CGI Calendar 2.7 allow remote attackers to inject arbitrary web script or HTML via the year parameter in (1) index.cgi and (2) viewday.cgi.
References
Configurations
Information
Published : 2006-03-03 03:02
Updated : 2018-10-18 09:30
NVD link : CVE-2006-0980
Mitre link : CVE-2006-0980
JSON object : View
CWE
Products Affected
jay_eckles
- cgi_calendar


