CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.4. It may be remotely exploitable.
CVE
CVE-2006-2303
Severity
MEDIUM
CVSS
6.4
EPSS
1.58%
Original NVD Description
Cross-Application Scripting (XAS) vulnerability in ICQ Client 5.04 build 2321 and earlier allows remote attackers to inject arbitrary web script from one application into another via a banner, which is processed in the My Computer zone using the Internet Explorer COM object.