CVE-2006-6223: XSS
Cross-site scripting (XSS) vulnerability in Google Search Appliance and Google Mini allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded q parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6223?
CVE-2006-6223 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2006-6223?
To fix CVE-2006-6223, update to the latest version of Google Search Appliance or Google Mini that patches this vulnerability.
What software is affected by CVE-2006-6223?
CVE-2006-6223 affects both Google Mini Search Appliance and Google Search Appliance.
What type of vulnerability is CVE-2006-6223?
CVE-2006-6223 is a cross-site scripting (XSS) vulnerability allowing remote attackers to inject malicious scripts.
Can CVE-2006-6223 impact user data?
Yes, CVE-2006-6223 can impact user data by allowing attackers to execute arbitrary web scripts in the context of users accessing the affected applications.