Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-1367

Опубликовано: 09 мар. 2007
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in the login page in Avaya Communications Manager (CM) S87XX, S8500, and S8300 products before 3.1.3 allows remote attackers to inject arbitrary web script or HTML via the Login field.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:h:avaya:s8710:cm_2.0:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8710:cm_3.1:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8710:r2.0.0:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8710:r2.0.1:*:*:*:*:*:*:*

Одно из

cpe:2.3:h:avaya:s8300:cm_2.0:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8300:cm_3.1:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8300:r2.0.0:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8300:r2.0.1:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8500:cm_2.0:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8500:cm_3.1:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8500:r2.0.0:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8500:r2.0.1:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8700:cm_2.0:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8700:cm_3.1:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8700:r2.0.0:*:*:*:*:*:*:*
cpe:2.3:h:avaya:s8700:r2.0.1:*:*:*:*:*:*:*

EPSS

Процентиль: 56%
0.00333
Низкий

4.3 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Cross-site scripting (XSS) vulnerability in the login page in Avaya Communications Manager (CM) S87XX, S8500, and S8300 products before 3.1.3 allows remote attackers to inject arbitrary web script or HTML via the Login field.

EPSS

Процентиль: 56%
0.00333
Низкий

4.3 Medium

CVSS2

Дефекты

NVD-CWE-Other