Vulnerabilities > CVE-2007-4331 - Cross-Site Scripting vulnerability in Findnix

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
ctw-design

Summary

PHP remote file inclusion vulnerability in index.php in FindNix allows remote attackers to include the contents of arbitrary URLs and conduct cross-site scripting (XSS) attacks via a URL in the page parameter.

Vulnerable Configurations

Part Description Count
Application
Ctw_Design
1