Unrated severityNVD Advisory· Published May 30, 2006· Updated Apr 16, 2026
CVE-2006-2648
CVE-2006-2648
Description
Cross-site scripting (XSS) vulnerability in perform_search.asp for ASPBB 0.52 and earlier allows remote attackers to inject arbitrary HTML or web script via the search parameter.
Affected products
10cpe:2.3:a:aspbb:aspbb:0.1:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:a:aspbb:aspbb:0.1:*:*:*:*:*:*:*
- cpe:2.3:a:aspbb:aspbb:0.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:aspbb:aspbb:0.2:*:*:*:*:*:*:*
- cpe:2.3:a:aspbb:aspbb:0.3:*:*:*:*:*:*:*
- cpe:2.3:a:aspbb:aspbb:0.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:aspbb:aspbb:0.4:*:*:*:*:*:*:*
- cpe:2.3:a:aspbb:aspbb:0.5:*:*:*:*:*:*:*
- cpe:2.3:a:aspbb:aspbb:0.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:aspbb:aspbb:0.5.2:*:*:*:*:*:*:*
- cpe:2.3:a:aspbb:aspbb:alpha1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- secunia.com/advisories/20360nvd
- securityreason.com/securityalert/983nvd
- securitytracker.com/idnvd
- www.nukedx.comnvd
- www.securityfocus.com/archive/1/435280/100/0/threadednvd
- www.securityfocus.com/bid/18146nvd
- www.vupen.com/english/advisories/2006/2027nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/26819nvd
News mentions
0No linked articles in our index yet.