Vulnerabilities > CVE-2006-6777 - Input Validation vulnerability in Future Internet

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
future-internet
exploit available

Summary

Cross-site scripting (XSS) vulnerability in index.cfm in Future Internet allows remote attackers to inject arbitrary web script or HTML via the categoryId parameter in a Portal.ShowPage action.

Vulnerable Configurations

Part Description Count
Application
Future_Internet
1

Exploit-Db

descriptionFuture Internet index.cfm categoryId Parameter XSS. CVE-2006-6777. Webapps exploit for cfm platform
idEDB-ID:29335
last seen2016-02-03
modified2006-12-23
published2006-12-23
reporterLinux_Drox
sourcehttps://www.exploit-db.com/download/29335/
titleFuture Internet index.cfm categoryId Parameter XSS