Unrated severityNVD Advisory· Published Apr 20, 2006· Updated Apr 16, 2026
CVE-2006-1891
CVE-2006-1891
Description
Cross-site scripting (XSS) vulnerability in Martin Scheffler betaboard 0.1 allows remote attackers to inject arbitrary web script or HTML via a user's profile, possibly using the FormVal_profile parameter. NOTE: it is not clear whether this is a distributable product or a site-specific vulnerability. If it is site-specific, then it should not be included in CVE.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- secunia.com/advisories/19700nvdVendor Advisory
- lists.grok.org.uk/pipermail/full-disclosure/2006-April/045194.htmlnvd
- securityreason.com/securityalert/724nvd
- securityreason.com/securityalert/765nvd
- securitytracker.com/idnvd
- www.securityfocus.com/archive/1/431116/100/0/threadednvd
- www.securityfocus.com/bid/17556nvd
- www.vupen.com/english/advisories/2006/1377nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/25838nvd
News mentions
0No linked articles in our index yet.