CVE-2006-3494

N/A Unknown
Published: July 10, 2006 Modified: April 16, 2026
View on NVD

Description

Multiple cross-site scripting (XSS) vulnerabilities in Buddy Zone 1.0.1 allow remote attackers to inject arbitrary HTML and web script via the (1) cat_id parameter to (a) view_classifieds.php; (2) id parameter in (b) view_ad.php; (3) event_id parameter in (c) view_event.php, (d) delete_event.php, and (e) edit_event.php; and (4) group_id in (f) view_group.php.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/20933
Source: cve@mitre.org
Vendor Advisory
http://www.osvdb.org/26979
Source: cve@mitre.org
Exploit
http://www.osvdb.org/26980
Source: cve@mitre.org
Exploit
http://www.osvdb.org/26981
Source: cve@mitre.org
Exploit
http://www.osvdb.org/26982
Source: cve@mitre.org
Exploit
http://www.osvdb.org/26983
Source: cve@mitre.org
Exploit
http://www.osvdb.org/26984
Source: cve@mitre.org
Exploit
http://www.osvdb.org/26985
Source: cve@mitre.org
Exploit
http://www.osvdb.org/26988
Source: cve@mitre.org
http://www.osvdb.org/26989
Source: cve@mitre.org
http://www.osvdb.org/26990
Source: cve@mitre.org
http://www.osvdb.org/26991
Source: cve@mitre.org
http://www.osvdb.org/26992
Source: cve@mitre.org
http://www.osvdb.org/26993
Source: cve@mitre.org
http://www.vupen.com/english/advisories/2006/2645
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/20933
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://securityreason.com/securityalert/1209
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/26979
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.osvdb.org/26980
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.osvdb.org/26981
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.osvdb.org/26982
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.osvdb.org/26983
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.osvdb.org/26984
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.osvdb.org/26985
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.osvdb.org/26988
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/26989
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/26990
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/26991
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/26992
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/26993
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/438868/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/440144/100/100/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/18759
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/2645
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/27514
Source: af854a3a-2127-422b-91ae-364da2661108

40 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
8.1%
92th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

vastal_i-tech