CVE-2007-6126 | project alumni up to 1.0.8 year cross site scripting (EDB-4655 / XFDB-38621)
A vulnerability classified as problematic has been found in project alumni up to 1.0.8. Affected is an unknown function. The manipulation of the argument year leads to cross site scripting.
This vulnerability is traded as CVE-2007-6126. It is possible to launch the attack remotely. Furthermore, there is an exploit available.