Cross-site scripting (XSS) vulnerability in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary HTML or web script via (1) the catname parameter to displaypic.asp or (2) the search field. NOTE: vector 1 likely overlaps CVE-2006-3032.
References
Configurations
Information
Published : 2007-01-16 16:28
Updated : 2018-10-16 09:29
NVD link : CVE-2006-6936
Mitre link : CVE-2006-6936
JSON object : View
CWE
Products Affected
pensacola_web_designs
- xtremeasp_photogallery