Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-5728

Опубликовано: 30 окт. 2007
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in phpPgAdmin 3.5 to 4.1.1, and possibly 4.1.2, allows remote attackers to inject arbitrary web script or HTML via certain input available in PHP_SELF in (1) redirect.php, possibly related to (2) login.php, different vectors than CVE-2007-2865.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:phppgadmin:phppgadmin:3.5:*:*:*:*:*:*:*
cpe:2.3:a:phppgadmin:phppgadmin:3.5.2:*:*:*:*:*:*:*
cpe:2.3:a:phppgadmin:phppgadmin:3.5.3:*:*:*:*:*:*:*
cpe:2.3:a:phppgadmin:phppgadmin:4.1.1:*:*:*:*:*:*:*

EPSS

Процентиль: 65%
0.00488
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

ubuntu
почти 18 лет назад

Cross-site scripting (XSS) vulnerability in phpPgAdmin 3.5 to 4.1.1, and possibly 4.1.2, allows remote attackers to inject arbitrary web script or HTML via certain input available in PHP_SELF in (1) redirect.php, possibly related to (2) login.php, different vectors than CVE-2007-2865.

debian
почти 18 лет назад

Cross-site scripting (XSS) vulnerability in phpPgAdmin 3.5 to 4.1.1, a ...

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in phpPgAdmin 3.5 to 4.1.1, and possibly 4.1.2, allows remote attackers to inject arbitrary web script or HTML via certain input available in PHP_SELF in (1) redirect.php, possibly related to (2) login.php, different vectors than CVE-2007-2865.

EPSS

Процентиль: 65%
0.00488
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79