Skip to content
Saturday, December 6, 2025
Medium Published: Oct 01, 2007 Modified: Apr 09, 2025

CVE-2007-5161

4.3 CVSS SCORE
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N
Share:

Description

Cross-zone scripting vulnerability in the internal browser in i-Systems Feedreader 3.10 allows remote attackers to inject arbitrary web script or HTML via an item in a feed, as demonstrated by a WordPress blog update. NOTE: this was originally reported as XSS.

CVSS Vector Details

Attack Vector Network
Attack Complexity M
Confidentiality None
Integrity P
Availability None

Affected Software Configurations

  • a i-systems_inc. feedreader 3.10 * * * * * * *

Weaknesses (CWE)

  • CWE-79