Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2006-4796
Cross-site scripting (XSS) vulnerability in forum.asp in Snitz Forums 2000 3.4.06 allows remote attackers to inject arbitrary web script or HTML via the sortorder parameter (strtopicsortord variable).
Exploit prediction scoring system (EPSS) score
EPSS Score
0.077
EPSS Ranking
91.6%
CVSS Severity
CVSS v2 Score
4.3
References
http://forum.snitz.com/forum/topic.asp?TOPIC_ID=62773
http://secunia.com/advisories/21946
http://securityreason.com/securityalert/1578
http://www.osvdb.org/28832
http://www.securityfocus.com/archive/1/445902/100/0/threaded
http://www.securityfocus.com/archive/1/446043/100/0/threaded
http://www.securityfocus.com/bid/20004
http://www.vupen.com/english/advisories/2006/3632
https://exchange.xforce.ibmcloud.com/vulnerabilities/28921
http://forum.snitz.com/forum/topic.asp?TOPIC_ID=62773
http://secunia.com/advisories/21946
http://securityreason.com/securityalert/1578
http://www.osvdb.org/28832
http://www.securityfocus.com/archive/1/445902/100/0/threaded
http://www.securityfocus.com/archive/1/446043/100/0/threaded
http://www.securityfocus.com/bid/20004
http://www.vupen.com/english/advisories/2006/3632
https://exchange.xforce.ibmcloud.com/vulnerabilities/28921
Products affected by CVE-2006-4796
Snitz Communications
»
Snitz Forums 2000
»
Version:
3.4.06
cpe:2.3:a:snitz_communications:snitz_forums_2000:3.4.06
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved