Security Advisory

CVE-2006-2146

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-05-02 10:00:00
Last updated 2024-08-07 17:43:27
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in index.php in HB-NS 1.1.6 allow remote attackers to inject arbitrary web script or HTML via the (1) poster_name, (2) poster_email, (3) poster_homepage, or (4) message parameter.