4.3
CVSSv2

CVE-2008-0409

Published: 29/01/2008 Updated: 15/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in HTTP File Server (HFS) prior to 2.2c allows remote malicious users to inject arbitrary web script or HTML via the userinfo subcomponent of a URL.

Vulnerable Product Search on Vulmon Subscribe to Product

hfs http file server

Exploits

HFS versions 23 through 20 suffer from cross site scripting and information disclosure vulnerabilities ...
Syhunt HFSHack version 10b is an exploit for various vulnerabilities found in HFS versions 15 through 23 ...