CVE-2006-3106

Properties

Published:
19.06.2006
Updated:
17.10.2006
Patch available:
Severity:
Medium
CVSS vector:
(AV:R/AC:L/Au:NR/C:P/I:P/A:N/B:N)
Product:
Fredi Bach: PhpMyDesktop|arcade

Vulnerability description

Cross-site scripting (XSS) vulnerability in index.php in phpMyDesktop|Arcade 1.0 allows remote attackers to inject arbitrary web script or HTML via the subsite parameter in the subsite todo.

References:

SECTRACK:http://securitytracker.com/id?1016201