Unrated severityNVD Advisory· Published Jun 4, 2009· Updated Jun 16, 2026
CVE-2009-1907
CVE-2009-1907
Description
Cross-site scripting (XSS) vulnerability in claroline/linker/notfound.php in Claroline 1.8.11 allows remote attackers to inject arbitrary web script or HTML via the Referer HTTP header.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
7- forum.claroline.net/viewtopic.phpnvdPatch
- gsasec.blogspot.com/2009/05/claroline-v1811-cross-site-scripting.htmlnvdExploit
- www.securityfocus.com/bid/34883nvdExploitPatch
- secunia.com/advisories/35019nvdVendor Advisory
- www.securityfocus.com/archive/1/503365/100/0/threadednvd
- www.securitytracker.com/idnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/50404nvd
News mentions
0No linked articles in our index yet.