CVE-2006-4317: XSS
Published Aug 24, 2006
·Updated
Cross-site scripting (XSS) vulnerability in attachment.php in WoltLab Burning Board (WBB) 2.3.5 allows remote attackers to inject arbitrary web script or HTML via a GIF image that contains URL-encoded Javascript.
Affected Software
1 affected component
WoltLab Burning Board=2.3.5
Event History
Aug 24, 2006
CVE Published
01:04 AM
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4317?
CVE-2006-4317 has a medium severity level due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2006-4317?
To fix CVE-2006-4317, upgrade to a patched version of WoltLab Burning Board that addresses this vulnerability.
3
What software is affected by CVE-2006-4317?
CVE-2006-4317 affects WoltLab Burning Board version 2.3.5.
4
Can CVE-2006-4317 lead to data theft?
Yes, CVE-2006-4317 can enable attackers to execute scripts that may lead to data theft or unauthorized access.
5
What are the symptoms of CVE-2006-4317 exploitation?
Symptoms of exploitation of CVE-2006-4317 may include unexpected scripts running in user browsers and altered webpage content.