TROYANOSYVIRUS
Voltar para CVEs

CVE-2006-2800

N/A

Descricao

Multiple cross-site scripting (XSS) vulnerabilities in Unak CMS 1.5 RC2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) u_a or (2) u_s parameters. NOTE: this might be resultant from SQL injection.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado6/3/2006
Ultima modificacao4/16/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

unak:unak_cms

Fraquezas (CWE)

CWE-79

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.