Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2007-4048

Опубликовано: 30 июл. 2007
Источник: debian
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in index.php in phpSysInfo 2.5.4-dev and earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
phpsysinfofixed2.5.1-6.1package
phpgroupwarefixed0.9.16.012-1package
phpgroupwarenot-affectedetchpackage
egroupwarefixed1.2.107-2.dfsg-1.1package

Примечания

  • phpsysinfo alone doesn't maintain any data, which makes this an issue

EPSS

Процентиль: 67%
0.00537
Низкий

Связанные уязвимости

ubuntu
больше 18 лет назад

Cross-site scripting (XSS) vulnerability in index.php in phpSysInfo 2.5.4-dev and earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

nvd
больше 18 лет назад

Cross-site scripting (XSS) vulnerability in index.php in phpSysInfo 2.5.4-dev and earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in index.php in phpSysInfo 2.5.4-dev and earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

EPSS

Процентиль: 67%
0.00537
Низкий
Уязвимость CVE-2007-4048