CVE-2007-3991 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in cv.asp in Asp cvmatik 1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) Adiniz (Ady) (2) Soyadiniz (Soyady) (3) Ehliyet (4) Askerlik and (5) GSM parameters; and possibly other unspecified vectors.

Reference

http://downloads.securityfocus.com/vulnerabilities/exploits/25008.html http://osvdb.org/36471 http://secunia.com/advisories/26174 http://www.securityfocus.com/bid/25008 http://www.vupen.com/english/advisories/2007/2604

Share on: