CVE-2007-1433

Grayscale Blog < 0.8.0 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in Grayscale Blog 0.8.0, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via the comment fields to (1) scripts/addblog_comment.php and (2) detail.php.

Exploits (1)

exploitdb WRITEUP
webappsphp
https://www.exploit-db.com/exploits/3447

Scores

EPSS 0.0186
EPSS Percentile 83.1%

Details

Status published
Products (1)
grayscale/grayscale_blog < 0.8.0
Published Mar 13, 2007
Tracked Since Feb 18, 2026