Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2007-6156
Multiple cross-site scripting (XSS) vulnerabilities in base_qry_main.php in Base Analysis and Security Engine (BASE) before 1.3.9 allow remote attackers to inject arbitrary web script or HTML via the (1) sig[0] and (2) sig[1] parameters.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.005
EPSS Ranking
64.0%
CVSS Severity
CVSS v2 Score
4.3
References
http://secunia.com/advisories/27834
http://sourceforge.net/project/shownotes.php?group_id=103348&release_id=555614
http://sourceforge.net/tracker/index.php?func=detail&aid=1801192&group_id=103348&atid=635582
http://www.osvdb.org/38792
http://www.securityfocus.com/bid/26596
http://www.vupen.com/english/advisories/2007/4021
http://secunia.com/advisories/27834
http://sourceforge.net/project/shownotes.php?group_id=103348&release_id=555614
http://sourceforge.net/tracker/index.php?func=detail&aid=1801192&group_id=103348&atid=635582
http://www.osvdb.org/38792
http://www.securityfocus.com/bid/26596
http://www.vupen.com/english/advisories/2007/4021
Products affected by CVE-2007-6156
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.1
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.1
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.1.2
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.1.2
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.1.3
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.1.3
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.1.4
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.1.4
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.2
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.2
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.2.0
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.2.0
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.2.1
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.2.1
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.2.2
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.2.2
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.2.4
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.2.4
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.2.5
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.2.5
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.2.6
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.2.6
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.2.7
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.2.7
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.3.5
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.3.5
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.3.6
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.3.6
Secureideas
»
Basic Analysis And Security Engine
»
Version:
1.3.8
cpe:2.3:a:secureideas:basic_analysis_and_security_engine:1.3.8
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved