Lucene search

K
cveMitreCVE-2006-5063
HistorySep 28, 2006 - 12:07 a.m.

CVE-2006-5063

2006-09-2800:07:00
mitre
web.nvd.nist.gov
41
cve
2006
5063
elog
xss
vulnerability
remote attackers
web script
html
log entries

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

5.5

Confidence

High

EPSS

0.03

Percentile

90.9%

Cross-site scripting (XSS) vulnerability in Elog 2.6.1 allows remote attackers to inject arbitrary web script or HTML by editing log entries in HTML mode.

Affected configurations

Nvd
Node
stefan_rittelog_web_logbookMatch2.6.1
VendorProductVersionCPE
stefan_rittelog_web_logbook2.6.1cpe:2.3:a:stefan_ritt:elog_web_logbook:2.6.1:*:*:*:*:*:*:*

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

5.5

Confidence

High

EPSS

0.03

Percentile

90.9%