CVE-2006-0521 Information

Description

Cross-site scripting (XSS) vulnerability in results.php in BrowserCRM allows remote attackers to inject arbitrary web script or HTML via certain manipulations of the query parameter as demonstrated using an IMG SRC tag.

Reference

http://secunia.com/advisories/18658 http://securityreason.com/securityalert/393 http://www.osvdb.org/22841 http://www.securityfocus.com/archive/1/423546/100/0/threaded http://www.securityfocus.com/bid/16435 http://www.vupen.com/english/advisories/2006/0391 https://exchange.xforce.ibmcloud.com/vulnerabilities/24390

Share on: