CVE-2007-2470: XSS
Published May 2, 2007
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in index.php in FileRun 1.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) page, (2) module, or (3) section parameter.
Affected Software
1 affected component
FileRun FileRun<=1.0
Event History
May 2, 2007
CVE Published
11:19 PM
May 3, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2470?
The severity of CVE-2007-2470 is categorized as medium with a score of 5.8.
2
How do I fix CVE-2007-2470?
To fix CVE-2007-2470, update FileRun to a version later than 1.0 that addresses the XSS vulnerabilities.
3
What vulnerabilities are associated with CVE-2007-2470?
CVE-2007-2470 is associated with multiple cross-site scripting (XSS) vulnerabilities in the index.php file.
4
What parameters are involved in the XSS vulnerabilities of CVE-2007-2470?
The parameters involved in the XSS vulnerabilities of CVE-2007-2470 are page, module, and section.
5
Who is affected by CVE-2007-2470?
Users of FileRun version 1.0 and earlier are affected by CVE-2007-2470 due to the presence of XSS vulnerabilities.