Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-2052

Опубликовано: 26 апр. 2006
Источник: nvd
CVSS2: 5.8
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in Verosky Media Instant Photo Gallery allows remote attackers to inject arbitrary web script or HTML via the member parameter in a viewpro action in member.php. NOTE: the original report may be inaccurate, since the "viewpro" string does not appear in the source code for version 1.0.2 of the product.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:verosky_media:instant_photo_gallery:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 67%
0.00548
Низкий

5.8 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Cross-site scripting (XSS) vulnerability in Verosky Media Instant Photo Gallery allows remote attackers to inject arbitrary web script or HTML via the member parameter in a viewpro action in member.php. NOTE: the original report may be inaccurate, since the "viewpro" string does not appear in the source code for version 1.0.2 of the product.

EPSS

Процентиль: 67%
0.00548
Низкий

5.8 Medium

CVSS2

Дефекты

NVD-CWE-Other