Cross-site scripting (XSS) vulnerability in ViewVC 1.1 before 1.1.5 and 1.0 before 1.0.11, when the regular expression search functionality is enabled, allows remote attackers to inject arbitrary web script or HTML via vectors related to "search_re input," a different vulnerability than CVE-2010-0736.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2010-0164 | Cross-site scripting (XSS) vulnerability in ViewVC 1.1 before 1.1.5 and 1.0 before 1.0.11, when the regular expression search functionality is enabled, allows remote attackers to inject arbitrary web script or HTML via vectors related to "search_re input," a different vulnerability than CVE-2010-0736. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: flexera
Published:
Updated: 2024-08-07T00:37:53.920Z
Reserved: 2010-01-04T00:00:00
Link: CVE-2010-0132
No data.
Status : Deferred
Published: 2010-03-31T18:00:00.327
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-0132
No data.
OpenCVE Enrichment
No data.
EUVD