CVE Database
/

CVE-2006-2951

Back to search

CVE-2006-2951

Published: Jun 12, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in Net Portal Dynamic System (NPDS) 5.10 and earlier allow remote attackers to inject arbitrary web script and HTML via the (1) Titlesitename or (2) sitename parameter to (a) header.php, (3) nuke_url parameter to (b) meta/meta.php, (4) forum parameter to (c) viewforum.php, (5) post_id, (6) forum, (7) topic, or (8) arbre parameter to (d) editpost.php, or (9) uname or (10) email parameter to (e) user.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

26294
vdb-entry
x_refsource_OSVDB
20523
third-party-advisory
x_refsource_SECUNIA
26295
vdb-entry
x_refsource_OSVDB
1076
third-party-advisory
x_refsource_SREASON
18383
vdb-entry
x_refsource_BID
26292
vdb-entry
x_refsource_OSVDB
26296
vdb-entry
x_refsource_OSVDB
26293
vdb-entry
x_refsource_OSVDB
ADV-2006-2233
vdb-entry
x_refsource_VUPEN
npds-multiple-scripts-xss(27123)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now