Unrated severityNVD Advisory· Published Jul 11, 2006· Updated Apr 16, 2026
CVE-2006-3519
CVE-2006-3519
Description
Multiple cross-site scripting (XSS) vulnerabilities in The Banner Engine (tbe) 4.0 allow remote attackers to execute arbitrary web script or HTML via the (1) text parameter in a search action to (a) top.php, and the (2) adminpass or (3) adminlogin parameter to (b) signup.php.
Affected products
1- cpe:2.3:a:native_solutions:the_banner_engine:4.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- securitytracker.com/idnvdExploit
- secunia.com/advisories/20916nvdVendor Advisory
- securityreason.com/securityalert/1204nvd
- www.securityfocus.com/archive/1/438972/100/0/threadednvd
- www.securityfocus.com/bid/18793nvd
- www.vupen.com/english/advisories/2006/2656nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/27549nvd
News mentions
0No linked articles in our index yet.