Cross-site scripting (XSS) vulnerability in photos.cfm in Directory Image Gallery 1.1 allows remote attackers to inject arbitrary web script or HTML via the backwardDirectory parameter.
References
Configurations
History
21 Nov 2024, 00:37
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/38629 - | |
References | () http://pridels-team.blogspot.com/2007/10/directory-image-gallery-xss-vuln.html - | |
References | () http://www.vupen.com/english/advisories/2007/3425 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/36986 - |
Information
Published : 2007-10-09 18:17
Updated : 2024-11-21 00:37
NVD link : CVE-2007-5292
Mitre link : CVE-2007-5292
CVE.ORG link : CVE-2007-5292
JSON object : View
Products Affected
splitside
- directory_image_gallery
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')