Loading
Multiple cross-site scripting (XSS) vulnerabilities in SHOUTcast 1.9.5 allow remote attackers to inject arbitrary HTML or web script via the DJ fields (1) Description, (2) URL, (3) Genre, (4) AIM, and (5) ICQ.
Use Nullsoft vendor hub and Shoutcast Server product page to widen CVE-2006-3007 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2006-3534, CVE-2004-1373 and CVE-2002-0907 for nearby disclosures in the same product family.