CVE detail
CVE-2008-7117 — CVE-2008-7117
Published 2009-08-28 · Modified 2026-06-16 · Vendor webidsupport · Product webid · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0173
EPSS probability
exploitation probability, 30d
75.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
eledicss.php in WeBid auction script 0.5.4 allows remote attackers to modify arbitrary cascading style sheets (CSS) files via a certain request with the file parameter set to style.css. NOTE: this can probably be leveraged for cross-site scripting (XSS) attacks.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References