Vulnerabilities > CVE-2006-2810 - Unspecified vulnerability in Belchior Foundry Vcard 2.9
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Multiple cross-site scripting (XSS) vulnerabilities in Belchior Foundry vCard 2.9 allow remote attackers to inject arbitrary web script or HTML via the page parameter in (1) toprated.php and (2) newcards.php. NOTE: the card_id vector is already covered by CVE-2006-1230.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://secunia.com/advisories/19216
- http://secunia.com/advisories/19216
- http://securityreason.com/securityalert/1034
- http://securityreason.com/securityalert/1034
- http://securityreason.com/securityalert/571
- http://securityreason.com/securityalert/571
- http://securitytracker.com/id?1016183
- http://securitytracker.com/id?1016183
- http://www.securityfocus.com/archive/1/435310/100/0/threaded
- http://www.securityfocus.com/archive/1/435310/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26838
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26838