Vulnerabilities > CVE-2006-1850 - Unspecified vulnerability in Skymarx Solutions Xflow

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
skymarx-solutions
exploit available

Summary

Multiple cross-site scripting (XSS) vulnerabilities in xFlow 5.46.11 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) level, (2) position, (3) id, and (4) action parameters to members_only/index.cgi, and the (5) page parameter to customer_area/index.cgi.

Vulnerable Configurations

Part Description Count
Application
Skymarx_Solutions
1

Exploit-Db

descriptionxFlow 5.46.11 index.cgi Multiple Parameter XSS. CVE-2006-1850. Webapps exploit for cgi platform
idEDB-ID:27691
last seen2016-02-03
modified2006-04-19
published2006-04-19
reporterr0t
sourcehttps://www.exploit-db.com/download/27691/
titlexFlow 5.46.11 index.cgi Multiple Parameter XSS