Cross-site scripting (XSS) vulnerability in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary HTML or web script via (1) the catname parameter to displaypic.asp or (2) the search field. NOTE: vector 1 likely overlaps CVE-2006-3032.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-01-17T00:00:00
Updated: 2024-08-07T20:42:07.812Z
Reserved: 2007-01-16T00:00:00
Link: CVE-2006-6936
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-01-17T00:28:00.000
Modified: 2024-11-21T00:23:59.983
Link: CVE-2006-6936
Redhat
No data.