Cross-site scripting (XSS) vulnerability in eXV2 CMS 2.0.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a set_lang cookie to an unspecified component. NOTE: this may overlap CVE-2007-1965.
References
Configurations
Information
Published : 2007-08-15 12:17
Updated : 2018-10-15 14:34
NVD link : CVE-2007-4365
Mitre link : CVE-2007-4365
JSON object : View
CWE
Products Affected
exv2
- content_management_system