Unspecified vulnerability in Apache Wicket 1.4.x before 1.4.23, 1.5.x before 1.5.11, and 6.x before 6.8.0 allows remote attackers to obtain sensitive information via vectors that cause raw HTML templates to be rendered without being processed and reading the information that is outside of wicket:panel markup.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2014-02-10T23:00:00

Updated: 2024-08-06T15:20:37.447Z

Reserved: 2013-02-19T00:00:00

Link: CVE-2013-2055

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2014-02-10T23:55:04.933

Modified: 2014-02-11T20:14:50.400

Link: CVE-2013-2055

cve-icon Redhat

No data.