First published: Thu Sep 27 2007(Updated: )
Cross-site scripting (XSS) vulnerability in JSPWiki 2.5.139-beta allows remote attackers to inject arbitrary web script or HTML via the redirect parameter to wiki-3/Login.jsp and unspecified other components.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache JSPWiki | =2.5.139-beta |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5121 is classified as a high severity vulnerability due to the potential for remote attackers to execute arbitrary scripts.
To fix CVE-2007-5121, update JSPWiki to a patched version or implement input validation on the redirect parameter in affected components.
CVE-2007-5121 affects JSPWiki version 2.5.139-beta, particularly the login and other unspecified components.
Yes, CVE-2007-5121 can allow attackers to inject scripts that may lead to data theft through cross-site scripting.
While it is difficult to confirm specific exploitations, vulnerabilities like CVE-2007-5121 are commonly targeted by malicious actors.