CVE-2007-6597

NONE

Multiple cross-site scripting (XSS) vulnerabilities in IPortalX before Build 033 allow remote attackers to inject arbitrary web script or HTML via the (1) KW and (2) SF parameters to forum/login_user.

Опубликовано: 12/31/2007Обновлено: 4/9/2025

Описание

Multiple cross-site scripting (XSS) vulnerabilities in IPortalX before Build 033 allow remote attackers to inject arbitrary web script or HTML via the (1) KW and (2) SF parameters to forum/login_user.asp, and (3) the Date parameter to blogs.asp.

ИИ-АнализНа базе ИИ

Затронутые продукты

iportalxiportalx
beta_1
iportalxiportalx
beta_1

Доступные эксплойты (2)

Ссылки