First published: Tue Apr 18 2006(Updated: )
Cross-site scripting (XSS) vulnerability in index.php in phpLinks 2.1.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the term parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WP Links Page | <=2.1.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1825 is classified as a moderate severity vulnerability due to its potential for cross-site scripting attacks.
To fix CVE-2006-1825, upgrade phpLinks to version 2.1.3.2 or later, which includes a patch for the XSS vulnerability.
CVE-2006-1825 affects phpLinks versions 2.1.3.1 and earlier.
CVE-2006-1825 is a cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web scripts or HTML.
Remote attackers can exploit CVE-2006-1825 to inject malicious scripts into web pages viewed by users of affected versions of phpLinks.