CVE Database
/

CVE-2007-4087

Back to search

CVE-2007-4087

Published: Jul 30, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

46950
vdb-entry
x_refsource_OSVDB
46949
vdb-entry
x_refsource_OSVDB
46948
vdb-entry
x_refsource_OSVDB
46952
vdb-entry
x_refsource_OSVDB
46951
vdb-entry
x_refsource_OSVDB
46947
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now