RSS   Vulnerabilities for 'I.list'   RSS

2006-06-12
 
CVE-2006-2957

 

 
Cross-site scripting (XSS) vulnerability in i.List 1.5 beta and earlier allows remote attackers to inject arbitrary web script or HTML via the banurl parameter to add.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

 
 
CVE-2006-2956

 

 
Multiple cross-site scripting (XSS) vulnerabilities in i.List 1.5 beta and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) searchword parameter to search.php or (2) siteurl parameter to add.php.

 


Copyright 2024, cxsecurity.com

 

Back to Top