CVE-2006-4739: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Jetbox CMS allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the OriginalImageData parameter to phpthumb.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-4739?
CVE-2006-4739 is classified as a high-severity vulnerability due to its potential for remote exploitation through cross-site scripting.
How do I fix CVE-2006-4739?
To fix CVE-2006-4739, it is recommended to upgrade Jetbox CMS to the latest version that addresses these XSS vulnerabilities.
What systems are affected by CVE-2006-4739?
CVE-2006-4739 specifically affects Jetbox CMS version 2.1_sr1.
What type of vulnerabilities are associated with CVE-2006-4739?
CVE-2006-4739 involves multiple cross-site scripting (XSS) vulnerabilities allowing remote script injection.
Can CVE-2006-4739 lead to data theft?
Yes, successful exploitation of CVE-2006-4739 can lead to data theft by injecting malicious scripts that compromise user sessions.