First published: Wed Mar 29 2006(Updated: )
Cross-site scripting (XSS) vulnerability in ActiveCampaign SupportTrio 2.50.2 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the KnowledgeBase search module.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ActiveCampaign SupportTrio | =2.50.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1487 is considered a moderate severity vulnerability due to its potential impact on web application security.
To fix CVE-2006-1487, update ActiveCampaign SupportTrio to the latest version that addresses this vulnerability.
CVE-2006-1487 allows attackers to perform cross-site scripting (XSS) attacks by injecting arbitrary web scripts or HTML.
ActiveCampaign SupportTrio version 2.50.2 is affected by CVE-2006-1487.
Exploiting CVE-2006-1487 can lead to unauthorized access to sensitive information and user sessions through XSS attacks.