CVE-2006-1918

Papoo - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in Papoo 2.1.5 allow remote attackers to inject arbitrary web script or HTML via the menuid parameter to (1) index.php or (2) forum.php, or the (3) reporeid_print parameter to print.php.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Rusydi Hasan · textwebappsphp
https://www.exploit-db.com/exploits/27647

Scores

EPSS 0.0041
EPSS Percentile 60.7%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

papoo/papoo

Timeline

Published Apr 20, 2006
Tracked Since Feb 18, 2026