CVE-2006-3024 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in EvGenius Counter 3.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the page parameter in (1) monthly.php and (2) daily.php.

Reference

http://pridels0.blogspot.com/2006/06/evgenius-counter-xss-vuln.html http://secunia.com/advisories/20546 http://securitytracker.com/id?1016281 http://www.osvdb.org/26423 http://www.osvdb.org/26424 http://www.vupen.com/english/advisories/2006/2309 https://exchange.xforce.ibmcloud.com/vulnerabilities/27078

Share on: