CVE Database
/

CVE-2006-1900

Back to search

CVE-2006-1900

Published: Apr 20, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple buffer overflows in World Wide Web Consortium (W3C) Amaya 9.4, and possibly other versions including 8.x before 8.8.5, allow remote attackers to execute arbitrary code via a long value in (1) the COMPACT attribute of the COLGROUP element, (2) the ROWS attribute of the TEXTAREA element, and (3) the COLOR attribute of the LEGEND element; and via other unspecified attack vectors consisting of "dozens of possible snippets."

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2006-1351
vdb-entry
x_refsource_VUPEN
19670
third-party-advisory
x_refsource_SECUNIA
17507
vdb-entry
x_refsource_BID
24624
vdb-entry
x_refsource_OSVDB
amaya-various-attribute-bo(25791)
vdb-entry
x_refsource_XF
24623
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now