CVE-2006-3958
Summary
| CVE | CVE-2006-3958 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-08-01 21:04:00 UTC |
| Updated | 2017-07-20 01:32:00 UTC |
| Description | Multiple unspecified cross-site scripting (XSS) vulnerabilities in Taskjitsu 2.0.3 allow remote attackers to inject arbitrary web script or HTML via (1) the Search Tasks system, or authenticated users via (2) the Edit Task system, (3) the back-end Category Editor system, and (4) "Pages that display task status, email addresses, URL, customer, and project information." |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Pkr Internet | Taskjitsu | 2.0.3 | All | All | All |
| Application | Pkr Internet | Taskjitsu | 2.0.3 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Taskjitsu Unspecified Cross-Site Scripting Vulnerabilities | BID | www.securityfocus.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | Vendor Advisory |
| 27637 | OSVDB | www.osvdb.org | |
| www.pkrinternet.com/download/RELEASE-NOTES.txt | CONFIRM | www.pkrinternet.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Taskjitsu Cross-Site Scripting and Script Insertion Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | Patch, Vendor Advisory |
| www.pkrinternet.com/taskjitsu/task/3477 | CONFIRM | www.pkrinternet.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.