CVE Vulnerabilities

CVE-2006-4739

Published: Sep 13, 2006 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Multiple cross-site scripting (XSS) vulnerabilities in Jetbox CMS allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the OriginalImageData parameter to phpthumb.php.

Affected Software

Name Vendor Start Version End Version
Jetbox_cms Jetbox 2.1_sr1 (including) 2.1_sr1 (including)

References