Unrated severityNVD Advisory· Published May 5, 2006· Updated Apr 16, 2026
CVE-2006-2210
CVE-2006-2210
Description
Cross-site scripting (XSS) vulnerability in index.php in 321soft PhP-Gallery 0.9 allows remote attackers to inject arbitrary web script or HTML via the path parameter. NOTE: this issue might be resultant from the directory traversal vulnerability.
Affected products
1- cpe:2.3:a:321soft:php-gallery:0.9:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- d4igoro.blogspot.com/2006/05/321soft-php-gallery-09-directory.htmlnvdExploit
- www.securityfocus.com/bid/17812nvdExploit
- secunia.com/advisories/19924nvdVendor Advisory
- www.securityfocus.com/archive/1/432964/100/0/threadednvd
- www.vupen.com/english/advisories/2006/1629nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/26230nvd
News mentions
0No linked articles in our index yet.