CVE-2007-5613

Description

Cross-site scripting (XSS) vulnerability in Dump Servlet in Mortbay Jetty before 6.1.6rc1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters and cookies.

Risk Information

Base Score
5.3
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
3.889

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2007-5614,CVE-2007-5613 are fixed in Mortbay - jetty 6.1.6Windows
Vulnerabilities CVE-2007-5614,CVE-2007-5613 are fixed in Mortbay - jetty for Linux 6.1.6Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234