Back

CVE-2006-0473

Cross-site scripting (XSS) vulnerability in the bbcode function in weblog.php in my little homepage my little weblog, as last modified in April 2004, allows remote attackers to inject arbitrary Javascript via a javascript URI in BBcode link tags.

Published: Jan 31, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
my_little_homepage my_little_weblog 2004-04-20

GitHub Security Advisory GHSA-cf9c-9r7x-87wj

Cross-site scripting (XSS) vulnerability in the bbcode function in weblog.php in my little...

Risk Scores

CVSS Score 4.3 / 10
EPSS Score 2.62%

Top 16% most likely to be exploited

Threat Score 18 / 100

Data Sources

NVD EPSS GitHub