Vulnerabilities > CVE-2007-3542 - Cross-Site Scripting vulnerability in Pluxml 0.3.1

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
pluxml
exploit available

Summary

Cross-site scripting (XSS) vulnerability in admin/auth.php in Pluxml 0.3.1 allows remote attackers to inject arbitrary web script or HTML via the msg parameter.

Vulnerable Configurations

Part Description Count
Application
Pluxml
1

Exploit-Db

descriptionPluxml 0.3.1 Remote Code Execution Exploit. CVE-2007-3432,CVE-2007-3542. Webapps exploit for php platform
fileexploits/php/webapps/4096.php
idEDB-ID:4096
last seen2016-01-31
modified2007-06-24
platformphp
port
published2007-06-24
reporterDarkFig
sourcehttps://www.exploit-db.com/download/4096/
titlePluxml 0.3.1 - Remote Code Execution Exploit
typewebapps