CVE-2007-6110: XSS
Published Nov 23, 2007
·Updated
Cross-site scripting (XSS) vulnerability in htsearch in htdig 3.2.0b6 allows remote attackers to inject arbitrary web script or HTML via the sort parameter.
Affected Software
1 affected component
htdig htdig=3.2.0b6
Event History
Nov 23, 2007
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-6110?
CVE-2007-6110 is considered a moderate severity vulnerability due to its cross-site scripting (XSS) exploit potential.
2
How do I fix CVE-2007-6110?
To fix CVE-2007-6110, upgrade to a patched version of ht://Dig above 3.2.0b6 that addresses the XSS vulnerabilities.
3
What kind of attack is possible with CVE-2007-6110?
CVE-2007-6110 allows remote attackers to inject arbitrary web scripts or HTML via the sort parameter, leading to XSS attacks.
4
Which software versions are affected by CVE-2007-6110?
CVE-2007-6110 specifically affects ht://Dig version 3.2.0b6.
5
Is there any public exploit for CVE-2007-6110?
There are no known public exploits specifically documented for CVE-2007-6110, but the nature of the vulnerability allows for potential exploitation.