Vulnerabilities > CVE-2006-3848 - Cross-Site Scripting vulnerability in Krischan Jodies IP Calculator 0.40

047910
CVSS 2.6 - LOW
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
high complexity
krischan-jodies

Summary

Cross-site scripting (XSS) vulnerability in CGI wrapper for IP Calculator (IPCalc) 0.40 allows remote attackers to inject arbitrary web script or HTML via the URI (REQUEST_URI environment variable), which is used in the actionurl variable.

Vulnerable Configurations

Part Description Count
Application
Krischan_Jodies
1