CVE Vulnerabilities

CVE-2006-1841

Published: Apr 19, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Cross-site scripting (XSS) vulnerability in search.php in boastMachine (bMachine) 2.7, and possibly other versions before 2.9b, allows remote attackers to inject arbitrary web script or HTML via the key parameter, as used by the search field.

Affected Software

NameVendorStart VersionEnd Version
BoastmachineKailash_nadh2.5 (including)2.5 (including)
BoastmachineKailash_nadh2.7 (including)2.7 (including)
BoastmachineKailash_nadh2.8 (including)2.8 (including)
BoastmachineKailash_nadh2.9b (including)2.9b (including)

References