Cross-site scripting (XSS) vulnerability in the Web UI in FreeIPA 4.x before 4.1.2 allows remote attackers to inject arbitrary web script or HTML via vectors related to breadcrumb navigation.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2014-11-28T15:00:00

Updated: 2024-08-06T13:03:27.296Z

Reserved: 2014-10-03T00:00:00

Link: CVE-2014-7850

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2014-11-28T15:59:01.807

Modified: 2015-02-17T14:36:43.483

Link: CVE-2014-7850

cve-icon Redhat

Severity : Moderate

Publid Date: 2014-11-19T00:00:00Z

Links: CVE-2014-7850 - Bugzilla