CVE-2006-1977
UnknownEPSS 1.18%
Last modified
CVE-2006-1977 is a vulnerability of currently unknown severity. Cross-site scripting (XSS) vulnerability in FlexBB 0.5.7 BETA and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) name and (2) message parameters.. EPSS estimates a 1.18% chance of exploitation in the next 30 days.
Description
Cross-site scripting (XSS) vulnerability in FlexBB 0.5.7 BETA and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) name and (2) message parameters.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Flexbb | Flexbb | <= 0.5.7_beta |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-1977?
Cross-site scripting (XSS) vulnerability in FlexBB 0.5.7 BETA and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) name and (2) message parameters.
How severe is CVE-2006-1977?
Severity scoring for CVE-2006-1977 is pending analysis. The EPSS model estimates a 1.18% probability of exploitation in the next 30 days.
How do I fix CVE-2006-1977?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2006
- CVE-2006-1971Cross-site scripting (XSS) vulnerability in login.php in KRA…
- CVE-2006-1972Cross-site scripting (XSS) vulnerability in EasyGallery.php …
- CVE-2006-1973Multiple unspecified vulnerabilities in Linksys RT31P2 VoIP …
- CVE-2006-1974SQL injection vulnerability in index.php in MyBB (MyBulletin…
- CVE-2006-1975Cross-site scripting (XSS) vulnerability in guestbook_newent…
- CVE-2006-1976Cross-site scripting (XSS) vulnerability in addRequest.php i…
- CVE-2006-1978SQL injection vulnerability in inc/start.php in FlexBB 0.5.5…
- CVE-2006-1979Cross-site scripting (XSS) vulnerability in mwguest.php in M…
- CVE-2006-1980Cross-site scripting (XSS) vulnerability in W2B Online Banki…
- CVE-2006-1981Unspecified vulnerability in Java InputMethods on Mac OS X 1…
- CVE-2006-1982Heap-based buffer overflow in the LZWDecodeVector function i…
- CVE-2006-1983Multiple heap-based buffer overflows in Mac OS X 10.4.6 and …
Are you affected by CVE-2006-1977?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
