First published: Tue Dec 04 2007(Updated: )
Cross-site scripting (XSS) vulnerability in index.php in FTP Admin 0.1.0 allows remote attackers to inject arbitrary web script or HTML via the error parameter in an error page action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HPE HP-UX | ||
HP Tru64 UNIX | ||
IBM AIX | ||
Linux Kernel | ||
santa cruz operation sco unix | =any_version | |
SGI IRIX | =any_version | |
Oracle Solaris SPARC | ||
windriver bsdos | =any_version | |
FTP Admin | =0.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6232 is classified as a high severity vulnerability due to its potential for cross-site scripting attacks.
To fix CVE-2007-6232, you should upgrade to a version of FTP Admin newer than 0.1.0 that addresses the XSS vulnerability.
CVE-2007-6232 specifically affects FTP Admin version 0.1.0.
CVE-2007-6232 is a cross-site scripting (XSS) vulnerability allowing attackers to inject scripts via the error parameter.
Users running FTP Admin version 0.1.0 are at risk from CVE-2007-6232 due to the injection vulnerability.