e107 Other Vulnerability - CVE-2004-2040 - Vulnerability Database

e107 Other Vulnerability - CVE-2004-2040

Medium
Reference: CVE-2004-2040
Title: e107 Other Vulnerability
Overview:

Multiple cross-site scripting (XSS) vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary web script or HTML via the (1) LAN_407 parameter to clock_menu.php (2) quotemail article to a friendquot field (3) quotsubmit newsquot field or (4) avmsg parameter to usersettings.php.