Multiple cross-site scripting (XSS) vulnerabilities in Fatwire Content Server (CS) CMS 6.3.0 allow remote attackers to inject arbitrary web script or HTML via unspecified form fields related to the (1) search function, (2) advanced search function, and possibly other components.
References
Configurations
History
21 Nov 2024, 00:38
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/38703 - | |
References | () http://osvdb.org/38704 - | |
References | () http://secunia.com/advisories/27663 - | |
References | () http://www.portcullis-security.com/223.php - | |
References | () http://www.securityfocus.com/bid/26472 - | |
References | () http://www.vupen.com/english/advisories/2007/3910 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/38305 - |
Information
Published : 2007-11-10 11:46
Updated : 2024-11-21 00:38
NVD link : CVE-2007-5932
Mitre link : CVE-2007-5932
CVE.ORG link : CVE-2007-5932
JSON object : View
Products Affected
fatwire
- fatwire_content_server
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')