CVE-2006-7050

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/02/2007
Last modified:
09/04/2025

Description

Cross-site scripting (XSS) vulnerability in WikkaWiki (Wikka Wiki) before 1.1.6.2 allows remote attackers to inject arbitrary javascript via (1) events in forced links (url parameter) that are not properly handled in formatters/wakka.php, and possibly (2) other vectors in wikka.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:wikkawiki:wikkawiki:*:*:*:*:*:*:*:* 1.1.6.1 (including)