Описание
Cross-site scripting (XSS) vulnerability in index.php in MP3 Search/Archive 1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter, as used by the "search box", and (2) res parameter.
Cross-site scripting (XSS) vulnerability in index.php in MP3 Search/Archive 1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter, as used by the "search box", and (2) res parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-3071
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27234
- http://secunia.com/advisories/20664
- http://securityreason.com/securityalert/1112
- http://www.osvdb.org/26530
- http://www.securityfocus.com/archive/1/437283/100/0/threaded
- http://www.vupen.com/english/advisories/2006/2385
EPSS
Процентиль: 66%
0.00527
Низкий
CVE ID
Связанные уязвимости
nvd
около 19 лет назад
Cross-site scripting (XSS) vulnerability in index.php in MP3 Search/Archive 1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter, as used by the "search box", and (2) res parameter.
EPSS
Процентиль: 66%
0.00527
Низкий