CVE-2006-1493
Cross-site scripting (XSS) vulnerability in dir.php in Explorer XP allows remote attackers to inject arbitrary web script or HTML via the chemin parameter. NOTE: it is possible that this issue is resultant from CVE-2006-1492.
Date published : 2006-03-29
http://www.securityfocus.com/bid/17303
http://archives.neohapsis.com/archives/fulldisclosure/2006-03/1806.html