CVE-2006-4660
Summary
| CVE | CVE-2006-4660 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-09-09 00:04:00 UTC |
| Updated | 2018-10-17 21:38:00 UTC |
| Description | Multiple cross-site scripting (XSS) vulnerabilities in the RSS Feed module in AOL ICQ Toolbar 1.3 for Internet Explorer (toolbaru.dll) allow remote attackers to process arbitrary web script or HTML in the Feeds interface context via the (1) title and (2) description elements within an item element in an RSS feed. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Icq Inc | Icq Toolbar | 1.3_for_internet_explorer | All | All | All |
| Application | Icq Inc | Icq Toolbar | 1.3_for_internet_explorer | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| ICQ Toolbar RSS Feeds Script Insertion Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | |
| Core Security | CoreLabs | MISC | www.coresecurity.com | Vendor Advisory |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| SecurityReason - Multiple vulnerabilities in ICQ Toolbar 1.3 for Internet Explorer | SREASON | securityreason.com | |
| ICQ Toolbar HTML Injection and Unauthorized Access Vulnerabilities | BID | www.securityfocus.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.