Vulnerabilities > CVE-2006-4973 - Unspecified vulnerability in Dotnetnuke

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
dotnetnuke
exploit available

Summary

Cross-site scripting (XSS) vulnerability in Default.aspx in Perpetual Motion Interactive Systems DotNetNuke before 3.3.5, and 4.x before 4.3.5, allows remote attackers to inject arbitrary HTML via the error parameter.

Exploit-Db

descriptionDotNetNuke 4.0 HTML Injection Vulnerability. CVE-2006-4973. Webapps exploit for asp platform
idEDB-ID:28615
last seen2016-02-03
modified2006-09-17
published2006-09-17
reporterSecure Shapes
sourcehttps://www.exploit-db.com/download/28615/
titleDotNetNuke <= 4.0 HTML Injection Vulnerability