2.6
CVSSv2

CVE-2006-2913

Published: 09/06/2006 Updated: 20/07/2017
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in SelectaPix 1.31 allows remote malicious users to inject arbitrary web script or HTML via the albumID parameter to (1) popup.php and (2) view_album.php.

Vulnerable Product Search on Vulmon Subscribe to Product

out of the trees web design selectapix 1.31

Exploits

Secunia Research has discovered some vulnerabilities in SelectaPix version 131, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks ...