Vulnerabilities > CVE-2006-1435 - Unspecified vulnerability in Accounting Receiving and Inventory Administration Aria 0.996

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN

Summary

Cross-site scripting (XSS) vulnerability in genmessage.php in Accounting Receiving and Inventory Administration (ARIA) 0.99-6 allows remote attackers to inject arbitrary web script or HTML via the Message Field (message parameter).

Exploit-Db

descriptionOZJournals 1.5 Multiple Input Validation Vulnerabilities. CVE-2006-1435. Webapps exploit for php platform
idEDB-ID:28325
last seen2016-02-03
modified2006-08-02
published2006-08-02
reporterLuny
sourcehttps://www.exploit-db.com/download/28325/
titleOZJournals 1.5 - Multiple Input Validation Vulnerabilities