CVE Database
/

CVE-2006-2052

Back to search

CVE-2006-2052

Published: Apr 26, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Verosky Media Instant Photo Gallery allows remote attackers to inject arbitrary web script or HTML via the member parameter in a viewpro action in member.php. NOTE: the original report may be inaccurate, since the "viewpro" string does not appear in the source code for version 1.0.2 of the product.

VendorProductVersions

n/a

n/a

affected
n/a

References

20060425 Instant Photo Gallery <= Multiple XSS
mailing-list
x_refsource_BUGTRAQ
17696
vdb-entry
x_refsource_BID
24984
vdb-entry
x_refsource_OSVDB
790
third-party-advisory
x_refsource_SREASON

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now