CVE-2006-4960

Publication date

2006-09-23 10:00:00

Family

mitre

State

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in index.php Php Blue Dragon 2.9.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the m parameter, which is reflected in an error message resulting from a failed SQL query.