CVE-2006-0833
Multiple cross-site scripting (XSS) vulnerabilities in Barracuda Directory 1.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to the (1) Add URL and (2) Suggest Category module.
Does this matter?
Lower severity and a low EPSS score (1.18%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple cross-site scripting (XSS) vulnerabilities in Barracuda Directory 1.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to the (1) Add URL and (2) Suggest Category module. NOTE: the provenance of this information is unknown; portions of the details are obtained from third party information.
- CVSS 2.0
- 4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
- EPSS
- 1.18% probability · 66th percentile
- CISA KEV
- Not listed
- Affected
- boonex/barracuda directory
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/18965Vendor Advisory
- http://www.osvdb.org/23372
- http://www.securityfocus.com/bid/16746
- http://www.vupen.com/english/advisories/2006/0674
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24807
- http://secunia.com/advisories/18965Vendor Advisory
- http://www.osvdb.org/23372
- http://www.securityfocus.com/bid/16746
- http://www.vupen.com/english/advisories/2006/0674
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24807
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.