CVE-2007-1872
Toenda Software Development Toendacms - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in toendaCMS 1.5.3 allows remote attackers to inject arbitrary web script or HTML via the searchword parameter in a search id.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Hanno Boeck · htmlwebappsphp
https://www.exploit-db.com/exploits/29849
References (8)
Scores
EPSS
0.1059
EPSS Percentile
93.3%
Details
Status
published
Products (1)
toenda_software_development/toendacms
1.5.3
Published
Apr 13, 2007
Tracked Since
Feb 18, 2026