Cross-site scripting (XSS) vulnerability in Google Search Appliance and Google Mini allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded q parameter.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-12-01 18:28
Updated : 2017-07-28 18:29
NVD link : CVE-2006-6223
Mitre link : CVE-2006-6223
JSON object : View
CWE
Products Affected
- search_appliance
- mini_search_appliance