Multiple cross-site scripting (XSS) vulnerabilities in the administration pages in Kallithea before 0.2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) first name or (2) last name user details, or the (3) repository, (4) repository group, or (5) user group description.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2017-09-19T15:00:00
Updated: 2024-08-06T04:54:16.332Z
Reserved: 2015-02-17T00:00:00
Link: CVE-2015-1864
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2017-09-19T15:29:00.617
Modified: 2020-05-28T16:59:04.713
Link: CVE-2015-1864
Redhat
No data.