First published: Thu Mar 13 2008(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities on the Cisco Linksys WAG54GS Wireless-G ADSL Gateway with 1.01.03 and earlier firmware allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different issue than CVE-2007-3574.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linksys WAG54GS | <=firmware_1.01.03 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6707 has a medium severity rating due to the potential for remote exploitation via cross-site scripting.
To fix CVE-2007-6707, upgrade the firmware of the Cisco Linksys WAG54GS to a version later than 1.01.03.
The implications of CVE-2007-6707 include the risk of attackers injecting malicious scripts which could lead to data theft or session hijacking.
CVE-2007-6707 affects the Cisco Linksys WAG54GS Wireless-G ADSL Gateway with firmware version 1.01.03 and earlier.
Attacks due to CVE-2007-6707 can include cross-site scripting, enabling attackers to execute arbitrary HTML or JavaScript in users' browsers.