CVE-2007-2423
EPSS 5.0%moin
Published: 5/2/2007Modified: 3/9/2026
Description
Cross-site scripting (XSS) vulnerability in index.php in MoinMoin 1.5.7 allows remote attackers to inject arbitrary web script or HTML via the do parameter in an AttachFile action, a different vulnerability than CVE-2007-0857. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected packages (2)
- Debian/moinfrom 0, < 1.5.7-3
- Debian/moinfrom 0, < 1.5.3-1.2etch1