Vulnerabilities > CVE-2007-0148 - Unspecified vulnerability in Omnigroup Omniweb 5.5.1

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
omnigroup
exploit available

Summary

Format string vulnerability in OmniGroup OmniWeb 5.5.1 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via format string specifiers in the Javascript alert function.

Vulnerable Configurations

Part Description Count
Application
Omnigroup
1

Exploit-Db

descriptionOmniWeb 5.5.1 Javascript alert() Remote Format String PoC. CVE-2007-0148. Dos exploit for osx platform
fileexploits/osx/dos/3098.html
idEDB-ID:3098
last seen2016-01-31
modified2007-01-07
platformosx
port
published2007-01-07
reporterMoAB
sourcehttps://www.exploit-db.com/download/3098/
titleOmniWeb 5.5.1 Javascript alert Remote Format String PoC
typedos