Unrated severityNVD Advisory· Published Dec 23, 2006· Updated Apr 23, 2026
CVE-2006-6703
CVE-2006-6703
Description
Multiple cross-site scripting (XSS) vulnerabilities in Oracle Portal 9i and 10g allow remote attackers to inject arbitrary JavaScript via the tc parameter in webapp/jsp/container_tabs.jsp, and other unspecified vectors.
Affected products
2- cpe:2.3:a:oracle:oracle10g:*:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:oracle9i:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.