5.8
CVSSv2

CVE-2007-1291

Published: 07/03/2007 Updated: 16/10/2018
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 590
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in Tyger Bug Tracking System (TygerBT) 1.1.3 allow remote malicious users to inject arbitrary web script or HTML via the PATH_INFO to (1) Login.php and (2) Register.php.

Vulnerable Product Search on Vulmon Subscribe to Product

tyger bug tracking system 1.1.3

Exploits

source: wwwsecurityfocuscom/bid/22799/info Tyger Bug Tracking System is prone to multiple input-validation vulnerabilities, including one SQL-injection issue and two cross-site scripting issues, because the application fails to sufficiently sanitize user-supplied input Exploiting these issues could allow an attacker to steal cookie- ...
source: wwwsecurityfocuscom/bid/22799/info Tyger Bug Tracking System is prone to multiple input-validation vulnerabilities, including one SQL-injection issue and two cross-site scripting issues, because the application fails to sufficiently sanitize user-supplied input Exploiting these issues could allow an attacker to steal cookie-ba ...