CVE Vulnerabilities

CVE-2006-4739

Published: Sep 13, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Multiple cross-site scripting (XSS) vulnerabilities in Jetbox CMS allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the OriginalImageData parameter to phpthumb.php.

Affected Software

NameVendorStart VersionEnd Version
Jetbox_cmsJetbox2.1_sr1 (including)2.1_sr1 (including)

References