Unrated severityNVD Advisory· Published Jan 9, 2007· Updated Apr 23, 2026
CVE-2007-0137
CVE-2007-0137
Description
Cross-site scripting (XSS) vulnerability in SimpleBoxes/SerendipityNZ Serene Bach 2.05R and earlier, and 2.08D and earlier in the 2.08 series; and (2) sb 1.13D and earlier, and 1.18R and earlier in the 1.18 series; allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
4cpe:2.3:a:serendipitynz:serene_bach:1.18r:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:serendipitynz:serene_bach:1.18r:*:*:*:*:*:*:*
- cpe:2.3:a:serendipitynz:serene_bach:2.05r:*:*:*:*:*:*:*
- cpe:2.3:a:serendipitynz:serene_bach:2.08d:*:*:*:*:*:*:*
- cpe:2.3:a:serendipitynz:serene_bach_sb:1.13d:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- secunia.com/advisories/23623nvdPatchVendor Advisory
- jvn.jp/jp/JVN%2365500885/index.htmlnvd
- osvdb.org/32580nvd
- securitytracker.com/idnvd
- serenebach.net/log/sb119R.htmlnvd
- serenebach.net/log/sb209R.htmlnvd
- www.securityfocus.com/bid/21884nvd
- www.vupen.com/english/advisories/2007/0065nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/31302nvd
News mentions
0No linked articles in our index yet.