Vulnerabilities > Netwin > Dnewsweb > Medium

DATE CVE VULNERABILITY TITLE RISK
2007-10-11 CVE-2007-5370 Cross-Site Scripting vulnerability in Netwin Dnewsweb 57E1
Multiple cross-site scripting (XSS) vulnerabilities in cgi-bin/dnewsweb.exe in NetWin DNewsWeb (DNews News Server) 57e1 allow remote attackers to inject arbitrary web script or HTML via the (1) group or (2) utag parameter.
network
netwin CWE-79
4.3