Lucene search

K
cveMitreCVE-2006-2515
HistoryMay 22, 2006 - 10:02 p.m.

CVE-2006-2515

2006-05-2222:02:00
mitre
web.nvd.nist.gov
33
xss
vulnerability
hiox guestbook 3.1
remote attackers
web script
html

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

5.8

Confidence

High

EPSS

0.03

Percentile

90.9%

Cross-site scripting (XSS) vulnerability in index.php in Hiox Guestbook 3.1 allows remote attackers to inject arbitrary web script or HTML via the input forms for signing the guestbook.

Affected configurations

Nvd
Node
hiox_indiaguest_bookMatch3.1
VendorProductVersionCPE
hiox_indiaguest_book3.1cpe:2.3:a:hiox_india:guest_book:3.1:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

5.8

Confidence

High

EPSS

0.03

Percentile

90.9%

Related for CVE-2006-2515