CVE Database
/

CVE-2007-0175

Back to search

CVE-2007-0175

Published: Jan 11, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in htsrv/login.php in b2evolution 1.8.6 allows remote attackers to inject arbitrary web script or HTML via scriptable attributes in the redirect_to parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

30093
third-party-advisory
x_refsource_SECUNIA
DSA-1568
vendor-advisory
x_refsource_DEBIAN
32027
vdb-entry
x_refsource_OSVDB
b2evolution-login-xss(31368)
vdb-entry
x_refsource_XF
21953
vdb-entry
x_refsource_BID
23656
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now