ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2007-2379”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2007-2379
Published
2007-04-30
CVSS:
-
ShadowTrackr CVSS:
0.0
Summary:
The jQuery framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain the data via a web page that retrieves the data through a URL in the SRC attribute of a SCRIPT element and captures the data using other JavaScript code, aka "JavaScript Hijacking."