5.8
CVE-2007-1177
- EPSS 1.11%
- Veröffentlicht 02.03.2007 21:18:00
- Zuletzt bearbeitet 16.06.2026 22:37:05
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
WebAPP before 0.9.9.5 does not properly filter certain characters in contexts related to (1) the query string, (2) Profiles, (3) the Forum Post icon field, (4) the Edit Profile, and (5) the Gallery, which has unknown impact and remote attack vectors, possibly related to cross-site scripting (XSS).
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Web-app.Org ≫ Webapp Version0.9.9
Web-app.Org ≫ Webapp Version0.9.9.1
Web-app.Org ≫ Webapp Version0.9.9.2
Web-app.Org ≫ Webapp Version0.9.9.2.1
Web-app.Org ≫ Webapp Version0.9.9.3
Web-app.Org ≫ Webapp Version0.9.9.3.1
Web-app.Org ≫ Webapp Version0.9.9.3.2
Web-app.Org ≫ Webapp Version0.9.9.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.11% | 0.615 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.8 | 8.6 | 4.9 |
AV:N/AC:M/Au:N/C:P/I:P/A:N
|
http://www.securityfocus.com/bid/22563
http://www.vupen.com/english/advisories/2007/0604
http://secunia.com/advisories/24080
http://www.web-app.org/cgi-bin/index.cgi?action=viewnews&id=250
http://osvdb.org/33277
http://osvdb.org/33283
http://osvdb.org/33286
http://osvdb.org/33287