### [CVE-2008-7220](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7220) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Unspecified vulnerability in Prototype JavaScript framework (prototypejs) before 1.6.0.2 allows attackers to make "cross-site ajax requests" via unknown vectors. ### POC #### Reference - http://packetstormsecurity.com/files/152787/dotCMS-5.1.1-Vulnerable-Dependencies.html - http://seclists.org/fulldisclosure/2019/May/13 - https://seclists.org/bugtraq/2019/May/18 #### Github - https://github.com/ARPSyndicate/cvemon - https://github.com/CVEDB/PoC-List - https://github.com/CVEDB/awesome-cve-repo - https://github.com/followboy1999/CVE-2008-7220 - https://github.com/sho-h/pkgvulscheck