CVE Vulnerabilities

CVE-2007-1177

Published: Mar 02, 2007 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

WebAPP before 0.9.9.5 does not properly filter certain characters in contexts related to (1) the query string, (2) Profiles, (3) the Forum Post icon field, (4) the Edit Profile, and (5) the Gallery, which has unknown impact and remote attack vectors, possibly related to cross-site scripting (XSS).

Affected Software

Name Vendor Start Version End Version
Webapp Web-app.org 0.9.9 (including) 0.9.9 (including)
Webapp Web-app.org 0.9.9.1 (including) 0.9.9.1 (including)
Webapp Web-app.org 0.9.9.2 (including) 0.9.9.2 (including)
Webapp Web-app.org 0.9.9.2.1 (including) 0.9.9.2.1 (including)
Webapp Web-app.org 0.9.9.3 (including) 0.9.9.3 (including)
Webapp Web-app.org 0.9.9.3.1 (including) 0.9.9.3.1 (including)
Webapp Web-app.org 0.9.9.3.2 (including) 0.9.9.3.2 (including)
Webapp Web-app.org 0.9.9.4 (including) 0.9.9.4 (including)

References