CVE Vulnerabilities

CVE-2006-4739

Published: Sep 13, 2006 | Modified: Oct 17, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Multiple cross-site scripting (XSS) vulnerabilities in Jetbox CMS allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the OriginalImageData parameter to phpthumb.php.

Affected Software

Name Vendor Start Version End Version
Jetbox_cms Jetbox 2.1_sr1 2.1_sr1

References