Loading
Cross-site scripting (XSS) vulnerability in the search function in Six Apart Movable Type 3.3 to 3.32, and Movable Type Enterprise 1.01 and 1.02, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Use CWE-79, Six Apart vendor hub and Movable Type product page to widen CVE-2006-5080 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2007-0231, CVE-2009-2481 and CVE-2011-2676 for nearby disclosures in the same product family.