[Forgot Password]
Login  Register Subscribe

23631

 
 

126941

 
 

98250

 
 

909

 
 

79281

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2007-2907

Date: (C)2007-05-30   (M)2015-12-16 


Unspecified vulnerability in SSL-Explorer before 0.2.13 allows remote authenticated users to enter redirect URLs containing (1) JavaScript or (2) HTTP headers via an unspecified vector, possibly the forwardTo parameter to redirect.do. NOTE: the impact might be cross-site scripting (XSS) or HTTP request smuggling.

CVSS Score: 4.9Access Vector: NETWORK
Exploit Score: 6.8Access Complexity: MEDIUM
Impact Score: 4.9Authentication: SINGLE_INSTANCE
 Confidentiality: PARTIAL
 Integrity: PARTIAL
 Availability: NONE





Reference:
BID-24319
SECUNIA-25512
OSVDB-36913
OSVDB-36915
ADV-2007-2057
http://sourceforge.net/forum/forum.php?forum_id=690648

CWE    1
CWE-119

© 2013 SecPod Technologies