Vulnerabilities > CVE-2007-3049 - Unspecified vulnerability in Buttercup WFM Buttercup WFM May2007
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN buttercup-wfm
exploit available
Summary
Cross-site scripting (XSS) vulnerability in index.php in Buttercup web file manager (BWFM) May 2007 allows remote attackers to inject arbitrary web script or HTML via the title parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Buttercup WFM Title Parameter Cross-Site Scripting Vulnerability. CVE-2007-3049. Webapps exploit for php platform |
id | EDB-ID:30131 |
last seen | 2016-02-03 |
modified | 2007-06-01 |
published | 2007-06-01 |
reporter | John Martinelli |
source | https://www.exploit-db.com/download/30131/ |
title | Buttercup WFM Title Parameter Cross-Site Scripting Vulnerability |
References
- http://osvdb.org/38805
- http://osvdb.org/38805
- http://redlevel.org/wp-content/uploads/buttercup.txt
- http://redlevel.org/wp-content/uploads/buttercup.txt
- http://www.securityfocus.com/bid/24269
- http://www.securityfocus.com/bid/24269
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34817
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34817