First published: Fri Nov 23 2007(Updated: )
Cross-site scripting (XSS) vulnerability in htsearch in htdig 3.2.0b6 allows remote attackers to inject arbitrary web script or HTML via the sort parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ht://Dig | =3.2.0b6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6110 is considered a moderate severity vulnerability due to its cross-site scripting (XSS) exploit potential.
To fix CVE-2007-6110, upgrade to a patched version of ht://Dig above 3.2.0b6 that addresses the XSS vulnerabilities.
CVE-2007-6110 allows remote attackers to inject arbitrary web scripts or HTML via the sort parameter, leading to XSS attacks.
CVE-2007-6110 specifically affects ht://Dig version 3.2.0b6.
There are no known public exploits specifically documented for CVE-2007-6110, but the nature of the vulnerability allows for potential exploitation.