PoC Index

CVE-2006-4973

MEDIUM 4.3EPSS 1.9%

Cross-site scripting (XSS) vulnerability in Default.aspx in Perpetual Motion Interactive Systems DotNetNuke before 3.3.5, and 4.x before 4.3.5, allows remote attackers to inject arbitrary HTML via the error parameter.

CVSS v2.0
4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
EPSS
1.91% chance of exploitation in the next 30 days, 78th percentile
Published
2006-09-25
Updated
2024-08-07

ExploitDB entries (1)

References

Related