Vulnerabilities > CVE-2006-5120 - Cross-Site Scripting vulnerability in Scott Metoyer RED Mombin 0.7

047910
CVSS 4.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
NONE
network
high complexity
scott-metoyer
exploit available

Summary

Multiple cross-site scripting (XSS) vulnerabilities in Scott Metoyer Red Mombin 0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) index.php and (2) process_login.php.

Vulnerable Configurations

Part Description Count
Application
Scott_Metoyer
1

Exploit-Db

  • descriptionRed Mombin 0.7 index.php Unspecified XSS. CVE-2006-5120. Webapps exploit for php platform
    idEDB-ID:28721
    last seen2016-02-03
    modified2006-09-22
    published2006-09-22
    reporterArmorize Technologies
    sourcehttps://www.exploit-db.com/download/28721/
    titleRed Mombin 0.7 index.php Unspecified XSS
  • descriptionRed Mombin 0.7 process_login.php Unspecified XSS. CVE-2006-5120. Webapps exploit for php platform
    idEDB-ID:28722
    last seen2016-02-03
    modified2006-09-22
    published2006-09-22
    reporterArmorize Technologies
    sourcehttps://www.exploit-db.com/download/28722/
    titleRed Mombin 0.7 process_login.php Unspecified XSS