Vulnerabilities > CVE-2006-0366 - Unspecified vulnerability in PHPclanwebsite 1.23.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN phpclanwebsite
exploit available
Summary
Cross-site scripting (XSS) vulnerability in Phpclanwebsite (aka PCW) allows remote attackers to inject arbitrary web script or HTML via a javascript URI in a BBCode img tag.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Phpclanwebsite 1.23.1 BBCode IMG Tag Script Injection Vulnerability. CVE-2006-0366. Webapps exploit for php platform |
id | EDB-ID:27109 |
last seen | 2016-02-03 |
modified | 2005-12-28 |
published | 2005-12-28 |
reporter | kurdish hackers team |
source | https://www.exploit-db.com/download/27109/ |
title | Phpclanwebsite 1.23.1 BBCode IMG Tag Script Injection Vulnerability |
References
- http://secunia.com/advisories/18541
- http://secunia.com/advisories/18541
- http://www.securityfocus.com/archive/1/422265/100/0/threaded
- http://www.securityfocus.com/archive/1/422265/100/0/threaded
- http://www.securityfocus.com/bid/16300
- http://www.securityfocus.com/bid/16300
- http://www.vupen.com/english/advisories/2006/0254
- http://www.vupen.com/english/advisories/2006/0254
- https://archive.cert.uni-stuttgart.de/bugtraq/2006/01/msg00343.html
- https://archive.cert.uni-stuttgart.de/bugtraq/2006/01/msg00343.html