Unrated severityNVD Advisory· Published Mar 2, 2007· Updated Jun 16, 2026
CVE-2006-7078
CVE-2006-7078
Description
Multiple cross-site scripting (XSS) vulnerabilities in Professional Home Page Tools Login Script, as of July 2006, allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) vorname, and (3) nachname parameters in the register script. NOTE: some details have been obtained from third party sources.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- cpe:2.3:a:professional_home_page_tools_login_script:professional_home_page_tools_login_script:*:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
6- secunia.com/advisories/21206nvdVendor Advisory
- lists.grok.org.uk/pipermail/full-disclosure/2006-July/048194.htmlnvd
- securityreason.com/securityalert/2329nvd
- www.securityfocus.com/archive/1/441194/100/0/threadednvd
- www.vupen.com/english/advisories/2006/2981nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/27967nvd
News mentions
0No linked articles in our index yet.