← Back

CVE-2006-0193

nvd nist
Published: Jan 13, 2006Modified: Apr 16, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in the Hosting Control Panel (psoft.hsphere.CP) in Positive Software H-Sphere 2.4.3 Patch 8 and earlier allows remote attackers to inject arbitrary web script or HTML via the login parameter in a login action.

Affected (32)

H Sphere
Configuration A
32 vulnerable
Vulnerable SoftwareAffected Versions
Positive Software
Version 2.4.1
Version 2.4.1_patch_1
Version 2.4.1_patch_2
Version 2.4.1_patch_3
Version 2.4.1_patch_4
Version 2.4.1_patch_5
Version 2.4.1_patch_6
Version 2.4.1_patch_7
Version 2.4.2
Version 2.4.2_beta_1
Version 2.4.2_beta_2
Version 2.4.2_beta_3
Version 2.4.2_patch_1
Version 2.4.2_patch_2
Version 2.4.2_patch_3
Version 2.4.2_patch_4
Version 2.4.2_patch_5
Version 2.4.2_rc1
Version 2.4.2_rc2
Version 2.4.3
Version 2.4.3_beta_1
Version 2.4.3_beta_2
Version 2.4.3_patch_1
Version 2.4.3_patch_2
Version 2.4.3_patch_3
Version 2.4.3_patch_4
Version 2.4.3_patch_5
Version 2.4.3_patch_6
Version 2.4.3_patch_7
Version 2.4.3_patch_8
Version 2.4.3_rc1
Version 2.4.3_rc2

References (14)

Timeline

No history available yet.