XSS in Upload page in Apache JSPWiki 2.12.1 and priors allows the attacker to execute javascript in the victim's browser and get some sensitive information about the victim. Apache JSPWiki users should upgrade to 2.12.2 or later.
Metrics
Affected Vendors & Products
References
History
Thu, 17 Oct 2024 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apache
Apache jspwiki |
|
CPEs | cpe:2.3:a:apache:jspwiki:*:*:*:*:*:*:*:* | |
Vendors & Products |
Apache
Apache jspwiki |
|
Metrics |
cvssV3_1
|
Fri, 13 Sep 2024 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: apache
Published: 2024-06-24T07:44:30.732Z
Updated: 2024-09-13T16:03:09.936Z
Reserved: 2024-02-20T12:13:15.203Z
Link: CVE-2024-27136
Vulnrichment
Updated: 2024-09-13T16:03:09.936Z
NVD
Status : Modified
Published: 2024-06-24T08:15:09.297
Modified: 2024-11-21T09:03:55.410
Link: CVE-2024-27136
Redhat
No data.