Multiple cross-site scripting (XSS) vulnerabilities in Apache Roller before 5.0.2 allow remote attackers to inject arbitrary web script or HTML via vectors related to the search results in the (1) RSS and (2) Atom feed templates.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2013-12-07T20:00:00
Updated: 2024-08-06T16:38:00.165Z
Reserved: 2013-06-12T00:00:00
Link: CVE-2013-4171
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-12-07T20:55:02.210
Modified: 2024-11-21T01:55:02.093
Link: CVE-2013-4171
Redhat
No data.