Unrated severityNVD Advisory· Published May 11, 2006· Updated Apr 16, 2026
CVE-2006-2307
CVE-2006-2307
Description
Cross-site scripting (XSS) vulnerability in Website Baker CMS before 2.6.4 allows remote attackers to inject arbitrary web script or HTML via a user display name.
Affected products
3cpe:2.3:a:website_baker:website_baker:2.5.2:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:website_baker:website_baker:2.5.2:*:*:*:*:*:*:*
- cpe:2.3:a:website_baker:website_baker:2.6:*:*:*:*:*:*:*
- cpe:2.3:a:website_baker:website_baker:2.6.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/20081nvdPatchVendor Advisory
- www.securityfocus.com/bid/17868nvdPatch
- securityreason.com/securityalert/889nvd
- www.securityfocus.com/archive/1/433130/100/0/threadednvd
- www.securityfocus.com/archive/1/434714/100/0/threadednvd
- www.vupen.com/english/advisories/2006/1840nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/26326nvd
News mentions
0No linked articles in our index yet.