CVE-2009-3444
Cross-site scripting (XSS) vulnerability in email.php in e107 0.7.16 and earlier allows remote attackers to inject arbit
Cross-site scripting (XSS) vulnerability in email.php in e107 0.7.16 and earlier allows remote attackers to inject arbitrary web script or HTML via the HTTP Referer header in a news.1 (aka news to email) action.
MEDIUM · CVSS 4.3
EPSS 0.00634
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0