Open Vulnerability and Assessment Language (OVAL)
Contact Us Downloads News December 4, 2008 Search
link to OVAL home page

View Definition

Definition Id: oval:org.mitre.oval:def:1575 Date: 2007-04-11
Title: CMS Cross-Site Scripting and Spoofing Vulnerability
Description: Cross-site scripting (XSS) vulnerability in Microsoft Content Management Server (MCMS) 2001 SP1 and 2002 SP2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving HTML redirection queries, aka "Cross-site Scripting and Spoofing Vulnerability."
Version: 1 Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2007-0939
Family: windows
Platform(s): Microsoft Windows Vista
Microsoft Windows Server 2003
Microsoft Windows XP
Microsoft Windows 2000
Product(s): Content Management Server
Definition Synopsis:

OVAL is CVE Compatible