Описание
Cross-site scripting (XSS) vulnerability in the DataForm Entries functionality in Plain Black WebGUI before 6.8.4 (gamma) allows remote attackers to inject arbitrary Javascript via the (1) url and (2) name field of the default email form.
Cross-site scripting (XSS) vulnerability in the DataForm Entries functionality in Plain Black WebGUI before 6.8.4 (gamma) allows remote attackers to inject arbitrary Javascript via the (1) url and (2) name field of the default email form.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-0165
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24053
- http://secunia.com/advisories/18372
- http://sourceforge.net/project/shownotes.php?release_id=384153&group_id=51417
- http://sourceforge.net/tracker/index.php?func=detail&aid=1395371&group_id=51417&atid=463213
- http://www.vupen.com/english/advisories/2006/0126
EPSS
Процентиль: 62%
0.00427
Низкий
CVE ID
Связанные уязвимости
nvd
около 20 лет назад
Cross-site scripting (XSS) vulnerability in the DataForm Entries functionality in Plain Black WebGUI before 6.8.4 (gamma) allows remote attackers to inject arbitrary Javascript via the (1) url and (2) name field of the default email form.
EPSS
Процентиль: 62%
0.00427
Низкий