AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2007-4077

MEDIUM · CVSS 4.3 EPSS 1.59%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-07-30 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2007-4077
Severity
MEDIUM
CVSS
4.3
EPSS
1.59%

Original Filing — NVD Description

Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft Video Share Enterprise allow remote attackers to inject arbitrary web script or HTML via the (1) msg, (2) page, (3) viewkey, or (4) viewtype parameter to (a) view_video.php; the (5) next parameter to (b) signup.php; the (6) search_id parameter to (c) search_result.php; the (7) category or (8) page parameter to (d) video.php; the (9) receiver parameter to (e) compose.php; the (10) catgy parameter to (f) groups.php; the (11) channelname parameter to (g) siteadmin/channels.php; or the (12) uname parameter to (h) siteadmin/muser.php.