Loading...
Loading...
Multiple cross-site scripting (XSS) vulnerabilities in The Address Book 1.04e allow remote attackers to inject arbitrary web script or HTML via Javascript events in the (1) email, (2) websites, and (3) groupAddName parameters in (a) save.php; the (4) errorMsg parameter in (b) index.php; and the (5) goTo and (6) search parameters in (c) search.php.
December 31, 2006
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2006-4577
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.