CVE-2006-2796
New-place Captivate - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in gallery.php in Captivate 1.0 allows remote attackers to inject arbitrary web script or HTML via the page parameter, which is reflected in an error message.
References (4)
Scores
EPSS
0.0128
EPSS Percentile
79.4%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
new-place/captivate
Timeline
Published
Jun 03, 2006
Tracked Since
Feb 18, 2026