Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-2491

Cross-site scripting (XSS) vulnerability in (1) index.php and (2) bmc/admin.php in BoastMachine (bMachine) 3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the query string, which is not properly filtered when it is accessed using the $_SERVER["PHP_SELF"] variable.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.095
EPSS Ranking 92.5%
CVSS Severity
CVSS v2 Score 6.8
Products affected by CVE-2006-2491


Contact Us

Shodan ® - All rights reserved