CVE Vulnerabilities

CVE-2007-3129

Published: Jun 19, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cross-site scripting (XSS) vulnerability in login.php in Utopia News Pro 1.4.0 allows remote attackers to inject arbitrary web script or HTML via the password parameter.

Affected Software

Name Vendor Start Version End Version
Utopia_news_pro Utopia_software * 1.4.0 (including)

References