Unrated severityNVD Advisory· Published Oct 16, 2007· Updated Apr 23, 2026
CVE-2007-5477
CVE-2007-5477
Description
Cross-site scripting (XSS) vulnerability in auth.w in djeyl.net WebMod 0.48 Half-Life Dedicated Server plugin allows remote attackers to inject arbitrary web script or HTML via the redir parameter.
Affected products
2- cpe:2.3:a:valve_software:half-life_dedicated_server:*:*:*:*:*:*:*:*
- cpe:2.3:a:valve_software:webmod_plugin:0.48:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6News mentions
0No linked articles in our index yet.