4.3
CVE-2007-2887
- EPSS 1.76%
- Veröffentlicht 30.05.2007 01:30:00
- Zuletzt bearbeitet 16.06.2026 22:40:38
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in index.php in Web Icerik Yonetim Sistemi (WIYS) 1.0 allows remote attackers to inject arbitrary web script or HTML via the No parameter in the Sayfa page.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Forsnet ≫ Web Icerik Yonetim Sistemi Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.76% | 0.751 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://osvdb.org/36329
http://osvdb.org/38346
http://secunia.com/advisories/25407
http://securityreason.com/securityalert/2742
http://www.securityfocus.com/archive/1/469500/100/0/threaded
http://www.securityfocus.com/bid/24117