CVE Vulnerabilities

CVE-2006-1841

Published: Apr 19, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cross-site scripting (XSS) vulnerability in search.php in boastMachine (bMachine) 2.7, and possibly other versions before 2.9b, allows remote attackers to inject arbitrary web script or HTML via the key parameter, as used by the search field.

Affected Software

Name Vendor Start Version End Version
Boastmachine Kailash_nadh 2.5 (including) 2.5 (including)
Boastmachine Kailash_nadh 2.7 (including) 2.7 (including)
Boastmachine Kailash_nadh 2.8 (including) 2.8 (including)
Boastmachine Kailash_nadh 2.9b (including) 2.9b (including)

References