Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-2028

Cross-site scripting (XSS) vulnerability in stats.php in e107 allows remote attackers to inject arbitrary web script or HTML via the referer parameter to log.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.2%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2004-2028
  • E107 » E107 » Version: 0.545
    cpe:2.3:a:e107:e107:0.545
  • E107 » E107 » Version: 0.554
    cpe:2.3:a:e107:e107:0.554
  • E107 » E107 » Version: 0.555_beta
    cpe:2.3:a:e107:e107:0.555_beta
  • E107 » E107 » Version: 0.603
    cpe:2.3:a:e107:e107:0.603
  • E107 » E107 » Version: 0.6_10
    cpe:2.3:a:e107:e107:0.6_10
  • E107 » E107 » Version: 0.6_11
    cpe:2.3:a:e107:e107:0.6_11
  • E107 » E107 » Version: 0.6_12
    cpe:2.3:a:e107:e107:0.6_12
  • E107 » E107 » Version: 0.6_13
    cpe:2.3:a:e107:e107:0.6_13
  • E107 » E107 » Version: 0.6_14
    cpe:2.3:a:e107:e107:0.6_14
  • E107 » E107 » Version: 0.6_15
    cpe:2.3:a:e107:e107:0.6_15
  • E107 » E107 » Version: 0.6_15a
    cpe:2.3:a:e107:e107:0.6_15a


Contact Us

Shodan ® - All rights reserved