First published: Thu Nov 15 2007(Updated: )
Cross-site scripting (XSS) vulnerability in cgi/b/ic/connect in the Thomson SpeedTouch 716 with firmware 5.4.0.14 allows remote attackers to inject arbitrary web script or HTML via the url parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Thomson SpeedTouch USB Driver | =716 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6003 is classified with a moderate severity due to its potential for exploitation via cross-site scripting.
To fix CVE-2007-6003, you should update the Thomson SpeedTouch 716 firmware to a version later than 5.4.0.14.
CVE-2007-6003 affects users of the Thomson SpeedTouch 716 with firmware version 5.4.0.14.
CVE-2007-6003 allows remote attackers to execute cross-site scripting attacks by injecting arbitrary web scripts or HTML.
While specific exploits for CVE-2007-6003 are not widely documented, the vulnerability poses a risk for XSS attacks.