Vulnerabilities > CVE-2006-1504 - Unspecified vulnerability in Arab Portal Arab Portal 2.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN arab-portal
exploit available
Summary
Multiple cross-site scripting (XSS) vulnerabilities in Arab Portal 2.0 (aka Arab Dynamic Portal or ADP) stable allow remote attackers to inject arbitrary web script or HTML via the title parameter in (1) online.php and (2) download.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description Arab Portal System 2.0 online.php title Parameter XSS. CVE-2006-1504. Webapps exploit for php platform id EDB-ID:27500 last seen 2016-02-03 modified 2006-03-28 published 2006-03-28 reporter o.y.6 source https://www.exploit-db.com/download/27500/ title Arab Portal System 2.0 online.php title Parameter XSS description Arab Portal System 2.0 download.php title Parameter XSS. CVE-2006-1504. Webapps exploit for php platform id EDB-ID:27501 last seen 2016-02-03 modified 2006-03-28 published 2006-03-28 reporter o.y.6 source https://www.exploit-db.com/download/27501/ title Arab Portal System 2.0 download.php title Parameter XSS
References
- http://secunia.com/advisories/19445
- http://secunia.com/advisories/19445
- http://securityreason.com/securityalert/673
- http://securityreason.com/securityalert/673
- http://www.osvdb.org/24220
- http://www.osvdb.org/24220
- http://www.osvdb.org/24221
- http://www.osvdb.org/24221
- http://www.securityfocus.com/archive/1/429109/100/0/threaded
- http://www.securityfocus.com/archive/1/429109/100/0/threaded
- http://www.securityfocus.com/bid/17285
- http://www.securityfocus.com/bid/17285
- http://www.vupen.com/english/advisories/2006/1150
- http://www.vupen.com/english/advisories/2006/1150
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25515
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25515