CVE-2006-6356

Multiple cross-site scripting (XSS) vulnerabilities in templates/link_temp.php in PHPNews 1.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) url, (2) id, (3) subject, (4) username, or (5) time parameter.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:phpnews:phpnews:1.3:*:*:*:*:*:*:*

Information

Published : 2006-12-06 17:28

Updated : 2018-10-17 14:47


NVD link : CVE-2006-6356

Mitre link : CVE-2006-6356


JSON object : View

Advertisement

dedicated server usa

Products Affected

phpnews

  • phpnews