CVE-2006-1097: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Datenbank MOD 2.7 and earlier for Woltlab Burning Board allow remote attackers to inject arbitrary web script or HTML via the fileid parameter to (1) infodb.php or (2) database.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-1097?
CVE-2006-1097 has a medium severity rating due to its potential for cross-site scripting attacks.
How do I fix CVE-2006-1097?
To fix CVE-2006-1097, update the Datenbank MOD to version 2.8 or later which includes fixes for the identified XSS vulnerabilities.
What applications are affected by CVE-2006-1097?
CVE-2006-1097 affects the Datenbank MOD versions 2.7 and earlier used with Woltlab Burning Board.
What type of vulnerabilities are associated with CVE-2006-1097?
CVE-2006-1097 is associated with multiple cross-site scripting (XSS) vulnerabilities that allow remote script injection.
Can CVE-2006-1097 be exploited by attackers?
Yes, attackers can exploit CVE-2006-1097 by injecting arbitrary web scripts or HTML through the affected parameters.