Lucene search

K
cveMitreCVE-2006-0643
HistoryFeb 10, 2006 - 11:02 a.m.

CVE-2006-0643

2006-02-1011:02:00
mitre
web.nvd.nist.gov
30
cve
2006
0643
cross-site scripting
xss
vulnerability
wiredred
e/pop
web conferencing
remote authenticated users
web script
html

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.3

Confidence

High

EPSS

0.006

Percentile

78.9%

Cross-site scripting (XSS) vulnerability in WiredRed e/pop Web Conferencing 4.1.0.755 allows remote authenticated users to inject arbitrary web script or HTML via the topic name of a conference.

Affected configurations

Nvd
Node
wiredrede_pop_web_conferencingMatch4.1.0.755
VendorProductVersionCPE
wiredrede_pop_web_conferencing4.1.0.755cpe:2.3:a:wiredred:e_pop_web_conferencing:4.1.0.755:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.3

Confidence

High

EPSS

0.006

Percentile

78.9%

Related for CVE-2006-0643