Lucene search

K
cveMitreCVE-2006-2049
HistoryApr 26, 2006 - 8:06 p.m.

CVE-2006-2049

2006-04-2620:06:00
mitre
web.nvd.nist.gov
23
cve
2006
2049
cross-site scripting
xss
dcboard.cgi
dcscripts
dcforumlite 3.0

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.01

Percentile

83.8%

Cross-site scripting (XSS) vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to inject arbitrary web script or HTML via the az parameter.

Affected configurations

Nvd
Node
dcscriptsdcforumliteMatch3.0
VendorProductVersionCPE
dcscriptsdcforumlite3.0cpe:2.3:a:dcscripts:dcforumlite:3.0:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.01

Percentile

83.8%

Related for CVE-2006-2049