Vulnerabilities > CVE-2006-6153 - Unspecified vulnerability in Vspin.Net Classified System 2004

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
vspin-net
exploit available

Summary

Multiple cross-site scripting (XSS) vulnerabilities in vSpin.net Classified System 2004 allow remote attackers to inject arbitrary web script or HTML via (1) catname parameter to cat.asp or the (2) minprice parameter to search.asp.

Vulnerable Configurations

Part Description Count
Application
Vspin.Net
1

Exploit-Db

  • descriptionvSpin Classified System 2004 cat.asp catname Parameter XSS. CVE-2006-6153. Webapps exploit for asp platform
    idEDB-ID:29105
    last seen2016-02-03
    modified2006-11-20
    published2006-11-20
    reporterlaurent gaffie
    sourcehttps://www.exploit-db.com/download/29105/
    titlevSpin Classified System 2004 cat.asp catname Parameter XSS
  • descriptionvSpin Classified System 2004 search.asp minprice Parameter XSS. CVE-2006-6153. Webapps exploit for asp platform
    idEDB-ID:29106
    last seen2016-02-03
    modified2006-11-20
    published2006-11-20
    reporterlaurent gaffie
    sourcehttps://www.exploit-db.com/download/29106/
    titlevSpin Classified System 2004 - search.asp minprice Parameter XSS