CVE-2006-5830: XSS
Multiple cross-site scripting (XSS) vulnerabilities in All In One Control Panel (AIOCP) 1.3.007 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) topid, (2) forid, and (3) catid parameters to code/cpforumview.php; (4) choosedlanguage parameter to cpdpage.php; (5) orderdir parameter to cplinkssearch.php; (6) orderfield parameter to (a) cpshowecproducts.php and (b) cpusersonline.php; and the (7) signature and (8) fiscal code fields in the user profile.
Affected Software
Event History
Frequently Asked Questions
Which application areas should be reviewed for exposure?
The affected inputs are in forum viewing, dynamic page handling, link search, e-commerce product display, online-user display, and user profile fields. Review uses of topid, forid, catid, choosed_language, orderdir, order_field, signature, and fiscal code in the named pages.
Can an unauthenticated remote attacker exploit these issues?
Yes. The supplied vector indicates network access, no authentication requirement, and medium attack complexity. Exploitation involves supplying script or HTML through one of the affected request parameters or profile fields.
Which versions are known to be affected?
AIOCP 1.3.007 and earlier are identified as affected. The provided data does not state which later version fixes the vulnerabilities.