CVE Vulnerabilities

CVE-2006-0946

Published: Mar 01, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Cross-site scripting (XSS) vulnerability in Thomson SpeedTouch modems running firmware 5.3.2.6.0 allows remote attackers to inject arbitrary web script or HTML via the name parameter to the LocalNetwork page.

Affected Software

NameVendorStart VersionEnd Version
SpeedtouchThomson516_5.3.2.6.0 (including)516_5.3.2.6.0 (including)
SpeedtouchThomson530_5.3.2.6.0 (including)530_5.3.2.6.0 (including)
SpeedtouchThomson536_5.3.2.6.0 (including)536_5.3.2.6.0 (including)
SpeedtouchThomson546_5.3.2.6.0 (including)546_5.3.2.6.0 (including)
SpeedtouchThomson576_5.3.2.6.0 (including)576_5.3.2.6.0 (including)
SpeedtouchThomson580_5.3.2.6.0 (including)580_5.3.2.6.0 (including)
SpeedtouchThomson585_5.3.2.6.0 (including)585_5.3.2.6.0 (including)

References