CVE-2006-4883 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in IDevSpot BizDirectory allow remote attackers to inject arbitrary web script or HTML via (1) the stylesheet parameter in Feed.php or (2) the message parameter in status.php.

Reference

http://secunia.com/advisories/21911 http://securityreason.com/securityalert/1611 http://securitytracker.com/id?1016876 http://www.securityfocus.com/archive/1/446223/100/0/threaded http://www.securityfocus.com/bid/20081 http://www.vupen.com/english/advisories/2006/3691 https://exchange.xforce.ibmcloud.com/vulnerabilities/29002

Share on: