Vulnerabilities > CVE-2006-6778 - Cross-Site Scripting vulnerability in Timberwolf 1.2.2

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
timberwolf
exploit available

Summary

Cross-site scripting (XSS) vulnerability in shownews.php in TimberWolf 1.2.2 allows remote attackers to inject arbitrary web script or HTML via the nid parameter.

Vulnerable Configurations

Part Description Count
Application
Timberwolf
1

Exploit-Db

descriptionTimberWolf 1.2.2 ShowNews.PHP Cross-Site Scripting Vulnerability. CVE-2006-6778. Webapps exploit for php platform
idEDB-ID:29337
last seen2016-02-03
modified2006-12-24
published2006-12-24
reporterCorryL
sourcehttps://www.exploit-db.com/download/29337/
titleTimberWolf 1.2.2 ShowNews.PHP Cross-Site Scripting Vulnerability