Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-0224

Опубликовано: 28 мар. 2019
Источник: debian

Описание

In Apache JSPWiki 2.9.0 to 2.11.0.M2, a carefully crafted URL could execute javascript on another user's session. No information could be saved on the server or jspwiki database, nor would an attacker be able to execute js on someone else's browser; only on its own browser.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jspwikiremovedpackage

Связанные уязвимости

CVSS3: 6.1
ubuntu
почти 7 лет назад

In Apache JSPWiki 2.9.0 to 2.11.0.M2, a carefully crafted URL could execute javascript on another user's session. No information could be saved on the server or jspwiki database, nor would an attacker be able to execute js on someone else's browser; only on its own browser.

CVSS3: 6.1
nvd
почти 7 лет назад

In Apache JSPWiki 2.9.0 to 2.11.0.M2, a carefully crafted URL could execute javascript on another user's session. No information could be saved on the server or jspwiki database, nor would an attacker be able to execute js on someone else's browser; only on its own browser.

CVSS3: 6.1
github
почти 7 лет назад

Moderate severity vulnerability that affects org.apache.jspwiki:jspwiki-main