Multiple cross-site scripting (XSS) vulnerabilities in Redoable 1.2 allow remote attackers to inject arbitrary web script or HTML via the s parameter to (1) wp-content/themes/redoable/searchloop.php or (2) wp-content/themes/redoable/header.php.
References
Configurations
History
21 Nov 2024, 00:31
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/37040 - | |
References | () http://osvdb.org/37041 - | |
References | () http://redlevel.org/wp-content/uploads/redoable.txt - | |
References | () http://secunia.com/advisories/25310 - | |
References | () http://securityreason.com/securityalert/2721 - | |
References | () http://www.securityfocus.com/archive/1/468892/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/24037 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/34363 - |
Information
Published : 2007-05-18 22:30
Updated : 2024-11-21 00:31
NVD link : CVE-2007-2757
Mitre link : CVE-2007-2757
CVE.ORG link : CVE-2007-2757
JSON object : View
Products Affected
dean_j_robinson
- redoable
CWE