CVE-2007-1610

Cross-site scripting (XSS) vulnerability in the RSS reader in Glue Software NewsGlue before 1.3.4 allows remote attackers to inject arbitrary web script or HTML via a feed.
Configurations

Configuration 1 (hide)

cpe:2.3:a:glue_software:newsglue:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:28

Type Values Removed Values Added
References () http://jvn.jp/jp/JVN%2364227086/index.html - () http://jvn.jp/jp/JVN%2364227086/index.html -
References () http://osvdb.org/34408 - () http://osvdb.org/34408 -
References () http://secunia.com/advisories/24603 - () http://secunia.com/advisories/24603 -
References () http://www.gluesoft.co.jp/NewsGlue/Update.aspx - () http://www.gluesoft.co.jp/NewsGlue/Update.aspx -
References () http://www.securityfocus.com/bid/23094 - () http://www.securityfocus.com/bid/23094 -
References () http://www.vupen.com/english/advisories/2007/1074 - () http://www.vupen.com/english/advisories/2007/1074 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/33166 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/33166 -

Information

Published : 2007-03-22 23:19

Updated : 2025-04-09 00:30


NVD link : CVE-2007-1610

Mitre link : CVE-2007-1610

CVE.ORG link : CVE-2007-1610


JSON object : View

Products Affected

glue_software

  • newsglue