Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2006-5791 | First vendor Publication | 2006-11-07 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:H/Au:N/C:N/I:P/A:N) | |||
---|---|---|---|
Cvss Base Score | 2.6 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | High |
Cvss Expoit Score | 4.9 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Multiple cross-site scripting (XSS) vulnerabilities in elogd.c in ELOG 2.6.2 and earlier allow remote attackers to inject arbitrary HTML or web script via (1) the filename for downloading, which is not quoted in an error message by the send_file_direct function, and (2) the Type or Category values in a New entry, which is not properly handled in an error message by the submit_elog function. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5791 |
CPE : Common Platform Enumeration
OpenVAS Exploits
Date | Description |
---|---|
2008-01-17 | Name : Debian Security Advisory DSA 1242-1 (elog) File : nvt/deb_1242_1.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
30177 | ELOG submit_elog Function Multiple Field XSS |
30176 | ELOG send_file_direct Function Error Message XSS |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2006-12-30 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-1242.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:19:03 |
|
2024-11-28 12:10:32 |
|
2021-05-05 01:02:59 |
|
2021-05-04 12:04:50 |
|
2021-04-22 01:05:26 |
|
2020-05-24 01:03:00 |
|
2020-05-23 00:18:40 |
|
2017-07-20 09:24:00 |
|
2016-04-26 15:16:41 |
|
2014-02-17 10:37:49 |
|
2013-05-11 11:13:36 |
|