Vulnerabilities > CVE-2006-1554 - HTML Injection vulnerability in Tachyon Vsns Lemon 3.2.0

047910
CVSS 2.6 - LOW
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
high complexity
tachyon

Summary

Cross-site scripting (XSS) vulnerability in VSNS Lemon 3.2.0 allows remote attackers to inject arbitrary web script or HTML via the name parameter while adding a comment. Successful exploitation requires that the "magic_quotes_gpc" parameter is disabled.

Vulnerable Configurations

Part Description Count
Application
Tachyon
1