CVE Vulnerabilities

CVE-2006-6920

Published: Jan 11, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Cross-site scripting (XSS) vulnerability in Nucleus before 3.24 allows remote attackers to inject arbitrary web script or HTML via unknown vectors, possibly involving (1) lib/ADMIN.php and (2) lib/SKIN.php.

Affected Software

Name Vendor Start Version End Version
Nucleus_cms Nucleus_cms 3.0 (including) 3.0 (including)
Nucleus_cms Nucleus_cms 3.0_rc (including) 3.0_rc (including)
Nucleus_cms Nucleus_cms 3.01 (including) 3.01 (including)
Nucleus_cms Nucleus_cms 3.1 (including) 3.1 (including)
Nucleus_cms Nucleus_cms 3.2 (including) 3.2 (including)
Nucleus_cms Nucleus_cms 3.21 (including) 3.21 (including)
Nucleus_cms Nucleus_cms 3.22 (including) 3.22 (including)
Nucleus_cms Nucleus_cms 3.23 (including) 3.23 (including)

References