Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2006-2997

Опубликовано: 13 июн. 2006
Источник: debian

Описание

Cross-site scripting (XSS) vulnerability in ZMS 2.9 and earlier, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the raw parameter in the search field.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zope-zmsunfixedpackage
zope-zmsno-dsasargepackage

Примечания

  • register_globals is an unsupported mode of operation in Debian

Связанные уязвимости

nvd
больше 19 лет назад

Cross-site scripting (XSS) vulnerability in ZMS 2.9 and earlier, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the raw parameter in the search field.

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in ZMS 2.9 and earlier, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the raw parameter in the search field.