Unrated severityNVD Advisory· Published Feb 8, 2007· Updated Jun 16, 2026
CVE-2006-6977
CVE-2006-6977
Description
Cross-site scripting (XSS) vulnerability in the "Basic Toolbar Selection" in FreeTextBox allows remote attackers to execute arbitrary JavaScript via the javascript: URI in the (1) href or (2) onmouseover attribute of the A HTML tag.
Affected products
2cpe:2.3:a:freetextbox:freetextbox:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:freetextbox:freetextbox:*:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.