cve/2006/CVE-2006-6518.md

19 lines
812 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2006-6518](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6518)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Multiple cross-site scripting (XSS) vulnerabilities in ProNews 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) pseudo, (2) email, (3) date, (4) sujet, (5) message, (6) site, and (7) lien parameters to (a) admin/change.php, and the (8) aa parameter to (b) lire-avis.php.
### POC
#### Reference
- http://securityreason.com/securityalert/2025
2024-06-09 00:33:16 +00:00
- http://securityreason.com/securityalert/2025
2024-05-26 14:27:05 +02:00
#### Github
No PoCs found on GitHub currently.