CVE-2006-2796 Information

Description

Cross-site scripting (XSS) vulnerability in gallery.php in Captivate 1.0 allows remote attackers to inject arbitrary web script or HTML via the page parameter which is reflected in an error message.

Reference

http://archives.neohapsis.com/archives/bugtraq/2006-05/0413.html http://securityreason.com/securityalert/1020 http://www.securityfocus.com/bid/18072 https://exchange.xforce.ibmcloud.com/vulnerabilities/26589

Share on: