4.3
CVE-2007-1176
- EPSS 1.57%
- Veröffentlicht 02.03.2007 21:18:00
- Zuletzt bearbeitet 16.06.2026 22:37:05
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple cross-site scripting (XSS) vulnerabilities in WebAPP before 0.9.9.5 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) Gallery Comments pages, (2) Feedback pages, (3) Search Results pages, and (4) the Statistics Log viewer.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Web-app.Org ≫ Webapp Version <= 0.9.9.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.57% | 0.721 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://www.securityfocus.com/bid/22563
http://www.vupen.com/english/advisories/2007/0604
http://osvdb.org/33276
http://osvdb.org/33288
http://osvdb.org/33289
http://osvdb.org/33290
http://secunia.com/advisories/24080
http://www.web-app.org/cgi-bin/index.cgi?action=viewnews&id=250
https://exchange.xforce.ibmcloud.com/vulnerabilities/32498
https://exchange.xforce.ibmcloud.com/vulnerabilities/32499
https://exchange.xforce.ibmcloud.com/vulnerabilities/32526