CVE-2007-6156

NameCVE-2007-6156
DescriptionMultiple cross-site scripting (XSS) vulnerabilities in base_qry_main.php in Base Analysis and Security Engine (BASE) before 1.3.9 allow remote attackers to inject arbitrary web script or HTML via the (1) sig[0] and (2) sig[1] parameters.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs453838

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
acidbasesourceetch(not affected)
acidbasesource(unstable)1.3.9-1low453838

Notes

[etch] - acidbase <not-affected> (vulnerable code not present, in etch acidbase exits in this case)

Search for package or bug name: Reporting problems