Security Advisory

CVE-2006-2812

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-06-05 17:00:00
Last updated 2024-08-07 18:06:26
Assigner mitre
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dominios Europa PICRATE (aka TAL RateMyPic) 1.0 allow remote attackers to inject arbitrary web script or HTML via a javascript URI in the SRC attribute of an IMG element in the (1) name (aka nick), (2) email, and (3) comment boxes; and via the (4) id parameter.