Vulnerabilities > CVE-2006-1971 - Cross-Site Scripting vulnerability in ContentBoxx Login.PHP

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
krankikom
exploit available

Summary

Cross-site scripting (XSS) vulnerability in login.php in KRANKIKOM ContentBoxX allows remote attackers to inject arbitrary web script or HTML via the action parameter.

Vulnerable Configurations

Part Description Count
Application
Krankikom
1

Exploit-Db

descriptionContentBoxx Login.PHP Cross-Site Scripting Vulnerability. CVE-2006-1971. Webapps exploit for php platform
idEDB-ID:27688
last seen2016-02-03
modified2006-04-19
published2006-04-19
reporterbotan
sourcehttps://www.exploit-db.com/download/27688/
titleContentBoxx Login.PHP Cross-Site Scripting Vulnerability