CVE-2006-5717 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in Zend Google Data Client Library (ZendGData) Preview 0.2.0 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters in (1) basedemo.php and (2) calenderdemo.php in samples/ and other unspecified files.

Reference

http://securityreason.com/securityalert/1815 http://www.armorize.com/resources/vulnerability.php?Keyword=Armorize-ADV-2006-0008 http://www.securityfocus.com/archive/1/450245/100/0/threaded http://www.securityfocus.com/bid/20851

Share on: