CVE-2007-6142

ph03y3nk JAF CMS 4.0 RC2 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in ph03y3nk just another flat file (JAF) CMS 4.0 RC2 allow remote attackers to inject arbitrary web script or HTML via the (1) show parameter to index.php and the (2) print parameter to print.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Scores

EPSS 0.0032
EPSS Percentile 55.1%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

salims_softhouse/jaf_cms

Timeline

Published Nov 27, 2007
Tracked Since Feb 18, 2026