CVE-2006-1779
UnknownEPSS 5.77%
Last modified
CVE-2006-1779 is a vulnerability of currently unknown severity. Cross-site scripting (XSS) vulnerability in login.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the btag parameter.. EPSS estimates a 5.77% chance of exploitation in the next 30 days.
Description
Cross-site scripting (XSS) vulnerability in login.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the btag parameter.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Simplog | Simplog | <= 0.9.2 |
References
- http://secunia.com/advisories/19628Vendor Advisory
- http://secunia.com/advisories/19628Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-1779?
Cross-site scripting (XSS) vulnerability in login.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the btag parameter.
How severe is CVE-2006-1779?
Severity scoring for CVE-2006-1779 is pending analysis. The EPSS model estimates a 5.77% probability of exploitation in the next 30 days.
How do I fix CVE-2006-1779?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2006
- CVE-2006-1773SQL injection vulnerability in include.php in PHPKIT 1.6.1 R…
- CVE-2006-1774HP System Management Homepage (SMH) 2.1.3.132, when running …
- CVE-2006-1775Multiple cross-site scripting (XSS) vulnerabilities in phpBB…
- CVE-2006-1776PHP remote file inclusion vulnerability in doc/index.php in …
- CVE-2006-1777Directory traversal vulnerability in doc/index.php in Jeremy…
- CVE-2006-1778Multiple SQL injection vulnerabilities in Jeremy Ashcraft Si…
- CVE-2006-1780The Bourne shell (sh) in Solaris 8, 9, and 10 allows local u…
- CVE-2006-1781PHP remote file inclusion vulnerability in functions.php in …
- CVE-2006-1782Unspecified vulnerability in Solaris 8 and 9 allows local us…
- CVE-2006-1783Cross-site scripting (XSS) vulnerability in PatroNet CMS all…
- CVE-2006-1784PHP remote file inclusion vulnerability in admin/configset.p…
- CVE-2006-1785Adobe Document Server for Reader Extensions 6.0 allows remot…
Are you affected by CVE-2006-1779?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
