{"id":"CVE-2006-1295","details":"Cross-site scripting (XSS) vulnerability in recherche.php3 in SPIP 1.8.2-g allows remote attackers to inject arbitrary web script or HTML via the recherche parameter.","modified":"2026-04-10T03:38:23.486392Z","published":"2006-03-19T23:02:00Z","references":[{"type":"ADVISORY","url":"http://www.zone-h.fr/advisories/read/id=1105"},{"type":"FIX","url":"http://zone.spip.org/trac/spip-zone/changeset/1672"},{"type":"WEB","url":"http://www.securityfocus.com/bid/17130"},{"type":"WEB","url":"http://www.silitix.com/spip-xss.html"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25389"}],"schema_version":"1.7.5"}