6.8
CVSSv2

CVE-2006-0015

Published: 11/04/2006 Updated: 19/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in _vti_bin/_vti_adm/fpadmdll.dll in Microsoft FrontPage Server Extensions 2002 and SharePoint Team Services allows remote malicious users to inject arbitrary web script or HTML, then leverage the attack to execute arbitrary programs or create new accounts, via the (1) operation, (2) command, and (3) name parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft sharepoint team services

microsoft frontpage server extensions 2002

Exploits

source: wwwsecurityfocuscom/bid/17452/info Microsoft FrontPage Server Extensions are prone to a cross-site scripting vulnerability This issue is due to a failure in the application to properly sanitize user-supplied input before it is rendered to other users An attacker may leverage this issue to have arbitrary script code executed in ...