First published: Tue Apr 03 2007(Updated: )
Cross-site scripting (XSS) vulnerability in cgi-bin/admin/logs.cgi in web-app.net WebAPP before 20060403 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to the Statistics Log Viewer.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Web App.net Webapp | =0.9.9.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-7189 is classified as a moderate severity vulnerability due to its cross-site scripting nature that potentially allows attackers to exploit web applications.
To fix CVE-2006-7189, it is recommended to upgrade to a version of web-app.net WebAPP later than 20060403 where the vulnerability has been addressed.
CVE-2006-7189 affects web-app.net WebAPP version 0.9.9.6, specifically the cgi-bin/admin/logs.cgi component.
CVE-2006-7189 is a cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web scripts or HTML.
Yes, CVE-2006-7189 can be exploited remotely, allowing attackers to execute malicious scripts in the context of a user's session.