Vulnerabilities > CVE-2006-1427 - Unspecified vulnerability in Web-App.Org Webapp

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
web-app-org
exploit available

Summary

Multiple cross-site scripting (XSS) vulnerabilities in WebAPP 0.9.9.3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) action, (2) id, (3) num, (4) board, (5) cat, (6) real, (7) viewcat, (8) img, or (9) curcatname parameter in cgi-bin/index.cgi, or (10) vsSD parameter in /mods/calendar/index.cgi.

Exploit-Db

  • descriptionWeb-APP.net WebAPP 0.9.x index.cgi Multiple Parameter XSS. CVE-2006-1427. Webapps exploit for cgi platform
    idEDB-ID:27561
    last seen2016-02-03
    modified2006-04-03
    published2006-04-03
    reporterr0t
    sourcehttps://www.exploit-db.com/download/27561/
    titleWeb-APP.net WebAPP 0.9.x index.cgi Multiple Parameter XSS
  • descriptionWeb-APP.net WebAPP 0.9.x mods/calendar/index.cgi vsSD Parameter XSS. CVE-2006-1427. Webapps exploit for cgi platform
    idEDB-ID:27562
    last seen2016-02-03
    modified2006-04-03
    published2006-04-03
    reporterr0t
    sourcehttps://www.exploit-db.com/download/27562/
    titleWeb-APP.net WebAPP 0.9.x mods/calendar/index.cgi vsSD Parameter XSS