Description
Cross-site scripting (XSS) vulnerability in stats.php in e107 allows remote attackers to inject arbitrary web script or HTML via the referer parameter to log.php.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2014-4296 Vulnerability (CVE-2014-4296)
WordPress Plugin Content Timeline Multiple SQL Injection Vulnerabilities (4.4.2)
PHP Other Vulnerability (CVE-2007-2727)
ownCloud Improper Input Validation Vulnerability (CVE-2012-5336)
WordPress Plugin AJAX Post Search 'srch_txt' Parameter SQL Injection (1.2)