Vulnerabilities > CVE-2007-3590 - Unspecified vulnerability in B1G B1Gbb 2.24
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN b1g
exploit available
Summary
Cross-site scripting (XSS) vulnerability in visitenkarte.php in b1gBB 2.24.0 allows remote attackers to inject arbitrary web script or HTML via the user parameter.
Exploit-Db
description | b1gbb 2.24.0 (SQL Injection / XSS) Remote Vulnerabilities. CVE-2007-3589,CVE-2007-3590. Webapps exploit for php platform |
file | exploits/php/webapps/4122.txt |
id | EDB-ID:4122 |
last seen | 2016-01-31 |
modified | 2007-06-28 |
platform | php |
port | |
published | 2007-06-28 |
reporter | GoLd_M |
source | https://www.exploit-db.com/download/4122/ |
title | b1gbb 2.24.0 SQL Injection / XSS Remote Vulnerabilities |
type | webapps |
References
- http://osvdb.org/38937
- http://osvdb.org/38937
- http://www.securityfocus.com/bid/24698
- http://www.securityfocus.com/bid/24698
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35131
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35131
- https://www.exploit-db.com/exploits/4122
- https://www.exploit-db.com/exploits/4122