Unrated severityNVD Advisory· Published Jun 16, 2006· Updated Apr 16, 2026
CVE-2006-3052
CVE-2006-3052
Description
Cross-site scripting (XSS) vulnerability in Event Registration allows remote attackers to inject arbitrary web script or HTML via the (1) event_id parameter to view-event-details.php or (2) select_events parameter to event-registration.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
Affected products
4- cpe:2.3:a:cescripts:event_registration_2checkout:*:*:*:*:*:*:*:*
- cpe:2.3:a:cescripts:event_registration_corporate:*:*:*:*:*:*:*:*
- cpe:2.3:a:cescripts:event_registration_paypal:*:*:*:*:*:*:*:*
- cpe:2.3:a:cescripts:event_registration_rsvp:1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- secunia.com/advisories/20640nvdVendor Advisory
- www.osvdb.org/26490nvd
- www.osvdb.org/26491nvd
- www.vupen.com/english/advisories/2006/2345nvd
News mentions
0No linked articles in our index yet.