CVE-2006-0185: Medium severity PHP-Nuke News Module vulnerability
Multiple cross-site scripting vulnerabilities in the (1) Pool or (2) News Modules in Php-Nuke allow remote attackers to inject arbitrary web script or HTML via javascript in the SRC attribute of an IMG tag.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0185?
CVE-2006-0185 is considered to have a medium severity due to its potential for cross-site scripting exploits.
How do I fix CVE-2006-0185?
To fix CVE-2006-0185, it is advised to update the affected Php-Nuke modules to their latest versions where the vulnerability is patched.
What types of attacks can occur due to CVE-2006-0185?
CVE-2006-0185 can allow remote attackers to inject arbitrary web scripts or HTML, leading to cross-site scripting (XSS) attacks.
Which Php-Nuke modules are affected by CVE-2006-0185?
The vulnerability in CVE-2006-0185 affects the Pool and News modules of Php-Nuke.
How can I detect if my Php-Nuke installation is vulnerable to CVE-2006-0185?
You can check your Php-Nuke installation for versions of the Pool and News modules that are prior to the patched versions to determine vulnerability to CVE-2006-0185.