CVE-2006-1802
Cross-site scripting (XSS) vulnerability in index.php in TinyWebGallery 1.3 and 1.4 allows remote attackers to inject arbitrary web script or HTML via the twg_album parameter.
- Affected products
- Tinywebgallery
- Tinywebgallery
- = 1.3, 1.4
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 1.9% (78th percentile)
- NVD status
- Modified
- Published
- 2006-04-18
CVE-2006-1802 at NVD
1 known exploit for CVE-2006-1802
Proof-of-concept code and exploit modules indexed by Sploitus