CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2006-1898

LOW
2.6
CVSS Severity Score
EPSS Score0.0580%
EPSS Percentile3.95th
Published2006年4月20日
Last Modified2026年4月16日

Vulnerability Description

Multiple cross-site scripting (XSS) vulnerabilities in Ralph Capper Tiny PHP Forum (TPF) 3.6 allow remote attackers to inject arbitrary web script or HTML via (1) the uname parameter in a view action in profile.php and (2) a login name. NOTE: the "Access to hash password" issue is already covered by CVE-2006-0103.

Affected Platforms (CPE)

📦
Ralph Capper

Tinyphpforum

= 3.6

References & Advisories

相關漏洞威脅

CVE-2006-1898 Detail & Impact Analysis | CVSS 2.6 (LOW) | Cyber-Sec.Space | Cyber-Sec.Space