CVE Vulnerabilities

CVE-2007-0144

Published: Jan 09, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Cross-site scripting (XSS) vulnerability in search.asp in Digitizing Quote And Ordering System 1.0 allows remote authenticated attackers to inject arbitrary web script or HTML via the ordernum parameter.

Affected Software

NameVendorStart VersionEnd Version
Digitizing_quote_and_ordering_systemDigitizing_quote_and_ordering_system1.0 (including)1.0 (including)

References