CyberSec.Space Logo
Back to CVE Browser

CVE-2006-0102

MEDIUM
4.3
CVSS Severity Score
EPSS Score0.0390%
EPSS Percentile2.09th
PublishedJan 6, 2006
Last ModifiedApr 16, 2026

Vulnerability Description

Cross-site scripting (XSS) vulnerability in TinyPHPForum (TPF) 3.6 and earlier allows remote attackers to inject arbitrary web script via a javascript: scheme in an "[a]" bbcode tag, possibly the txt parameter to action.php.

Affected Platforms (CPE)

πŸ“¦
Ralph Capper

Tinyphpforum

= 3.5
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.6
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.46
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.47
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.48
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.49
πŸ“¦
Ralph Capper

Tinyphpforum

= 3.499

References & Advisories

Related Vulnerabilities

CVE-2006-0102 Detail & Impact Analysis | CVSS 4.3 (MEDIUM) | Cyber-Sec.Space | Cyber-Sec.Space