Vulnerabilities > CVE-2007-2716 - Cross-Site Scripting vulnerability in EQDKP Show Variable
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Multiple cross-site scripting (XSS) vulnerabilities in EQdkp 1.3.2c and earlier allow remote attackers to inject arbitrary web script or HTML via the show parameter to (1) listmembers.php and (2) stats.php. NOTE: some of these details are obtained from third party information.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 7 |
Exploit-Db
description | EQDKP 1.3.1 Show Variable Cross-Site Scripting Vulnerability. CVE-2007-2716. Webapps exploit for php platform |
id | EDB-ID:30028 |
last seen | 2016-02-03 |
modified | 2007-05-12 |
published | 2007-05-12 |
reporter | kefka |
source | https://www.exploit-db.com/download/30028/ |
title | EQDKP <= 1.3.1 Show Variable Cross-Site Scripting Vulnerability |