CVE-2006-7122

BSQ Sitestats 1.8.0 - Cross-Site Scripting via IP Address Lookup Parameter

Title source: llm
STIX 2.1

Description

Cross-site scripting (XSS) vulnerability in the IP Address Lookup functionality in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allows remote attackers to inject arbitrary web script and HTML via the ip parameter.

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/29266
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/20267
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/2360
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/447356/100/0/threaded

Scores

EPSS 0.0005
EPSS Percentile 14.3%

Details

Status published
Products (1)
joomla/bsq_sitestats 1.8.0
Published Mar 06, 2007
Tracked Since Feb 18, 2026