CVE-2006-0208 PUBLISHED CVSS 2.5999999046325684 LOW

Multiple cross-site scripting (XSS) vulnerabilities in PHP 4.4.1 and 5.1.1, when display_errors and html_errors are on, allow remote attackers to inject arbitrary web script or HTML via inputs to PHP applications that are not filtered when they are included in the resulting error message.

EPSS 2.37% · 84.8th percentile

Risk Scores

CVSS v2.0
2.5999999046325684
EPSS Score
2.37%
84.8th percentile

Affected Products

VendorProductVersions
phpphp5.1.1, 4.0, 4.0
n/an/an/a

Timeline

References

…and 11 more

Open in Interactive Console →