Multiple cross-site scripting (XSS) vulnerabilities in add_comment.php in Wheatblog (wB) allow remote attackers to inject arbitrary web script or HTML via the (1) Name, (2) WWW, and (3) Comment fields. NOTE: this issue may overlap CVE-2006-5195.
References
Configurations
Information
Published : 2006-11-15 07:07
Updated : 2018-10-17 14:45
NVD link : CVE-2006-5921
Mitre link : CVE-2006-5921
JSON object : View
CWE
Products Affected
wheatblog
- wheatblog