Vulnerability Details CVE-2006-1535
Cross-site scripting (XSS) vulnerability in login.php in Phoetux.net PhxContacts 0.93.1 beta and earlier allows remote attackers to inject arbitrary web script or HTML via the m parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.0%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2006-1535
-
cpe:2.3:a:phoetux.net:phxcontacts:0.93
-
cpe:2.3:a:phoetux.net:phxcontacts:0.93.1