CVE-2007-6307
wwwstats 3.21 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in clickstats.php in wwwstats 3.21 allow remote attackers to inject arbitrary web script or HTML via (1) the link parameter or (2) the User-Agent HTTP header.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Jesus Olmos Gonzalez · bashwebappsphp
https://www.exploit-db.com/exploits/30854
References (6)
Scores
EPSS
0.1062
EPSS Percentile
93.2%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
jfree/jfreechart
Timeline
Published
Dec 11, 2007
Tracked Since
Feb 18, 2026