Unrated severityNVD Advisory· Published Jun 1, 2007· Updated Jun 16, 2026
CVE-2007-2976
CVE-2007-2976
Description
Centrinity FirstClass 8.3 and earlier, and Server and Internet Services 8.0 and earlier, do not properly handle a URL with a null ("%00") character, which allows remote attackers to conduct cross-site scripting (XSS) attacks. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected products
4- cpe:2.3:a:opentext:server_and_internet_services:*:*:*:*:*:*:*:*Range: <=8.0
- Range: <=8.3
- Range: <=8.0
Patches
Vulnerability mechanics
References
4- secunia.com/advisories/25447nvdVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/34534nvdThird Party Advisory
- osvdb.org/36415nvdBroken Link
- www.securityfocus.com/bid/24204nvdBroken Link
News mentions
0No linked articles in our index yet.