CVE Database
/

CVE-2006-3914

Back to search

CVE-2006-3914

Published: Jul 28, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Blackboard Academic Suite 6.2.3.23 allows remote authenticated users to inject arbitrary HTML or web script by bypassing client-side validation through disabling JavaScript when submitting an essay response, which has no server-side validation before being viewed via "View Attempt Details" in the Gradebook.

VendorProductVersions

n/a

n/a

affected
n/a

References

1295
third-party-advisory
x_refsource_SREASON
blackboard-test-textbox-xss(27895)
vdb-entry
x_refsource_XF
1016556
vdb-entry
x_refsource_SECTRACK
19101
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now