CVE-2007-4741
Claroline < 1.8.5 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in admin/adminusers.php in Claroline before 1.8.6 allows remote authenticated administrators to inject arbitrary web script or HTML via the sort parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Scores
EPSS
0.0020
EPSS Percentile
42.2%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
claroline/claroline
< 1.8.5
Timeline
Published
Sep 06, 2007
Tracked Since
Feb 18, 2026