CVE-2007-3596

Publication date

2007-07-06 18:00:00

Family

mitre

State

PUBLISHED

Description

inc/vul_check.inc in phpVideoPro before 0.8.8 permits non-alphanumeric characters in the sess_id parameter, which has unknown impact and remote attack vectors, probably cross-site scripting (XSS).