CVE-2007-4745

Joomla Akobook - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in the AkoBook 3.42 and earlier component (com_akobook) for Mambo allow remote attackers to inject arbitrary web script or HTML via Javascript events in the (1) gbmail and (2) gbpage parameters in the sign function.

Scores

EPSS 0.0007
EPSS Percentile 21.5%

Classification

CWE
CWE-79
Status draft

Affected Products (2)

joomla/akobook
mambo/mambo_site_server

Timeline

Published Sep 06, 2007
Tracked Since Feb 18, 2026