Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.101006
Category:Windows : Microsoft Bulletins
Title:Microsoft Security Bulletin MS06-056
Summary:A cross-site scripting vulnerability exists in a server; running a vulnerable version of the .Net Framework 2.0 that could inject a client side; script in the user's browser.
Description:Summary:
A cross-site scripting vulnerability exists in a server
running a vulnerable version of the .Net Framework 2.0 that could inject a client side
script in the user's browser.

Vulnerability Impact:
The script could spoof content, disclose information,
or take any action that the user could take on the affected web site.

Solution:
Microsoft has released an update to correct this issue,
please see the reference for more information.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2006-3436
BugTraq ID: 20337
http://www.securityfocus.com/bid/20337
CERT/CC vulnerability note: VU#455604
http://www.kb.cert.org/vuls/id/455604
HPdes Security Advisory: HPSBST02161
http://www.securityfocus.com/archive/1/449179/100/0/threaded
HPdes Security Advisory: SSRT061264
Microsoft Security Bulletin: MS06-056
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-056
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A377
http://securitytracker.com/id?1017029
http://secunia.com/advisories/22307
http://www.vupen.com/english/advisories/2006/3976
XForce ISS Database: asp-http-xss(28658)
https://exchange.xforce.ibmcloud.com/vulnerabilities/28658
CopyrightCopyright (C) 2009 Christian Eric Edjenguele

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.