CVE-2006-3049
Summary
| CVE | CVE-2006-3049 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-06-16 10:02:00 UTC |
| Updated | 2017-07-20 01:32:00 UTC |
| Description | Multiple cross-site scripting (XSS) vulnerabilities in booking3.php in Mole Group Ticket Booking Script allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) address1, (3) address2, (4) county, (5) postcode, (6) email, (7) phone, or (8) mobile parameters to booking2.php. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Mole Group Ticket Booking Script | Mole Group Ticket Booking Script | All | All | All | All |
| Application | Mole Group Ticket Booking Script | Mole Group Ticket Booking Script | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| [VIM] [SECUNIA] Re: 20612 typo? (fwd) | VIM | www.attrition.org | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| NEOHAPSIS - Peace of Mind Through Integrity and Insight | BUGTRAQ | archives.neohapsis.com | |
| Secunia - Advisories - Mole Group Ticket Booking Script Cross-Site Scripting | SECUNIA | secunia.com | Vendor Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.