5
CVSSv2

CVE-2006-2478

Published: 19/05/2006 Updated: 18/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Bitrix Site Manager 4.1.x allows remote malicious users to redirect users to other websites via a modified back_url during a HTTP POST request. NOTE: this issue has been referred to as "cross-site scripting," but that is inconsistent with the common use of the term.

Vulnerable Product Search on Vulmon Subscribe to Product

bitrix bitrix site manager 4.0.6

bitrix bitrix site manager 4.0.7

bitrix bitrix site manager 4.0.0

bitrix bitrix site manager 4.0.8

bitrix bitrix site manager 4.1.0

bitrix bitrix site manager 4.0.4

bitrix bitrix site manager 4.0.5

bitrix bitrix site manager 4.0.2

bitrix bitrix site manager 4.0.3