TROYANOSYVIRUS
Voltar para CVEs

CVE-2006-5703

N/A

Descricao

Cross-site scripting (XSS) vulnerability in tiki-featured_link.php in Tikiwiki 1.9.5 allows remote attackers to inject arbitrary web script or HTML via a url parameter that evades filtering, as demonstrated by a parameter value containing malformed, nested SCRIPT elements.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado11/4/2006
Ultima modificacao4/23/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

tiki:tikiwiki_cms\/groupware

Fraquezas (CWE)

CWE-79

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.