Cross-site scripting (XSS) vulnerability in Nucleus before 3.24 allows remote attackers to inject arbitrary web script or HTML via unknown vectors, possibly involving (1) lib/ADMIN.php and (2) lib/SKIN.php.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-01-11 15:28
Updated : 2017-07-28 18:29
NVD link : CVE-2006-6920
Mitre link : CVE-2006-6920
JSON object : View
CWE
Products Affected
nucleus_cms
- nucleus_cms