CVE-2007-6486
LineShout 1.0 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in shout.php (aka the shoutbox) in LineShout 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) username (nickname) or (2) message parameter. NOTE: some of these details are obtained from third party information.
References (4)
Scores
EPSS
0.0029
EPSS Percentile
51.7%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
geek-palace.com/lineshout
Timeline
Published
Dec 20, 2007
Tracked Since
Feb 18, 2026