CVE-2007-3596

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/07/2007
Last modified:
09/04/2025

Description

inc/vul_check.inc in phpVideoPro before 0.8.8 permits non-alphanumeric characters in the sess_id parameter, which has unknown impact and remote attack vectors, probably cross-site scripting (XSS).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:izzysoft:phpvideopro:*:*:*:*:*:*:*:* 0.8.7 (including)