Unrated severityNVD Advisory· Published Aug 7, 2007· Updated Jun 16, 2026
CVE-2007-4165
CVE-2007-4165
Description
Cross-site scripting (XSS) vulnerability in index.php in the Blue Memories theme 1.5 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter, possibly a related issue to CVE-2007-2757 and CVE-2007-4014. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected products
2- cpe:2.3:a:xuyiyang:blue_memories_theme:1.5:*:*:*:*:wordpress:*:*
- Range: = 1.5
Patches
Vulnerability mechanics
References
5- secunia.com/advisories/26345nvdVendor Advisory
- www.securityfocus.com/bid/25215nvdThird Party AdvisoryVDB Entry
- xuyiyang.com/2007/06/22/blue-memories-and-spring-updated/nvdBroken LinkThird Party Advisory
- www.osvdb.org/36603nvdBroken Link
- exchange.xforce.ibmcloud.com/vulnerabilities/35817nvdVDB Entry
News mentions
0No linked articles in our index yet.