Lucene search

K
cve[email protected]CVE-2007-0846
HistoryFeb 08, 2007 - 6:28 p.m.

CVE-2007-0846

2007-02-0818:28:00
web.nvd.nist.gov
22
cve
2007
0846
cross-site scripting
xss
vulnerability
open tibia server cms
otscms

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

5.8 Medium

AI Score

Confidence

High

0.029 Low

EPSS

Percentile

90.8%

Cross-site scripting (XSS) vulnerability in forum.php in Open Tibia Server CMS (OTSCMS) 2.1.5 and earlier allows remote attackers to inject arbitrary HTML or web script via the name parameter.

Affected configurations

NVD
Node
open_tibia_server_cmsopen_tibia_server_cmsMatch2.0
OR
open_tibia_server_cmsopen_tibia_server_cmsMatch2.1.3
OR
open_tibia_server_cmsopen_tibia_server_cmsMatch2.1.4
OR
open_tibia_server_cmsopen_tibia_server_cmsMatch2.1.5

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

5.8 Medium

AI Score

Confidence

High

0.029 Low

EPSS

Percentile

90.8%

Related for CVE-2007-0846