Vulnerabilities > CVE-2006-1233 - Unspecified vulnerability in Mikael Software Wmnews
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN mikael-software
exploit available
Summary
Multiple cross-site scripting (XSS) vulnerabilities in WMNews allow remote attackers to inject arbitrary web script or HTML via the (1) ArtCat parameter to wmview.php, (2) ctrrowcol parameter to footer.php, or (3) ArtID parameter to wmcomments.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description WMNews 0 wmcomments.php ArtID Parameter XSS. CVE-2006-1233. Webapps exploit for php platform id EDB-ID:27417 last seen 2016-02-03 modified 2006-03-10 published 2006-03-10 reporter R00T3RR0R source https://www.exploit-db.com/download/27417/ title WMNews - wmcomments.php ArtID Parameter XSS description WMNews 0 footer.php ctrrowcol Parameter XSS. CVE-2006-1233. Webapps exploit for php platform id EDB-ID:27416 last seen 2016-02-03 modified 2006-03-10 published 2006-03-10 reporter R00T3RR0R source https://www.exploit-db.com/download/27416/ title WMNews - footer.php ctrrowcol Parameter XSS description WMNews 0 wmview.php ArtCat Parameter XSS. CVE-2006-1233. Webapps exploit for php platform id EDB-ID:27415 last seen 2016-02-03 modified 2006-03-10 published 2006-03-10 reporter R00T3RR0R source https://www.exploit-db.com/download/27415/ title WMNews - wmview.php ArtCat Parameter XSS
References
- http://biyosecurity.be/bugs/wmnews.txt
- http://biyosecurity.be/bugs/wmnews.txt
- http://secunia.com/advisories/19204
- http://secunia.com/advisories/19204
- http://www.osvdb.org/23840
- http://www.osvdb.org/23840
- http://www.osvdb.org/23841
- http://www.osvdb.org/23841
- http://www.osvdb.org/23842
- http://www.osvdb.org/23842
- http://www.securityfocus.com/archive/1/427479/100/0/threaded
- http://www.securityfocus.com/archive/1/427479/100/0/threaded
- http://www.securityfocus.com/bid/17076
- http://www.securityfocus.com/bid/17076
- http://www.vupen.com/english/advisories/2006/0939
- http://www.vupen.com/english/advisories/2006/0939
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25210
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25210