Vulnerabilities > CVE-2006-5516 - Unspecified vulnerability in Wikini 0.4.2/0.4.3
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN wikini
exploit available
Summary
Multiple cross-site scripting (XSS) vulnerabilities in actions/usersettings.php in WikiNi before 0.4.4 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) email parameters to wakka.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description | WikiNi 0.4.x Waka.PHP Multiple HTML-Injection Vulnerabilities. CVE-2006-5516. Webapps exploit for php platform |
id | EDB-ID:28846 |
last seen | 2016-02-03 |
modified | 2006-10-23 |
published | 2006-10-23 |
reporter | Raphael Huck |
source | https://www.exploit-db.com/download/28846/ |
title | WikiNi 0.4.x Waka.PHP Multiple HTML-Injection Vulnerabilities |
References
- http://cvs.gna.org/cvsweb/wikini/actions/usersettings.php.diff?r1=1.14.2.1%3Br2=1.14.2.2%3Bcvsroot=wikini%3Bf=h
- http://cvs.gna.org/cvsweb/wikini/actions/usersettings.php.diff?r1=1.14.2.1%3Br2=1.14.2.2%3Bcvsroot=wikini%3Bf=h
- http://secunia.com/advisories/22558
- http://secunia.com/advisories/22558
- http://securityreason.com/securityalert/1776
- http://securityreason.com/securityalert/1776
- http://securitytracker.com/id?1017116
- http://securitytracker.com/id?1017116
- http://www.securityfocus.com/archive/1/449518/100/0/threaded
- http://www.securityfocus.com/archive/1/449518/100/0/threaded
- http://www.securityfocus.com/bid/20688
- http://www.securityfocus.com/bid/20688
- http://www.vupen.com/english/advisories/2006/4159
- http://www.vupen.com/english/advisories/2006/4159
- http://www.wikini.net/wakka.php?wiki=WikiNiChangeLog044
- http://www.wikini.net/wakka.php?wiki=WikiNiChangeLog044
- http://zone14.free.fr/advisories/6/
- http://zone14.free.fr/advisories/6/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29761
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29761