Количество 2
Количество 2
CVE-2015-2944
Multiple cross-site scripting (XSS) vulnerabilities in Apache Sling API before 2.2.2 and Apache Sling Servlets Post before 2.1.2 allow remote attackers to inject arbitrary web script or HTML via the URI, related to (1) org/apache/sling/api/servlets/HtmlResponse and (2) org/apache/sling/servlets/post/HtmlResponse.
GHSA-rxvx-44w5-44r7
Improper Neutralization of Input During Web Page Generation in Apache Sling
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2015-2944 Multiple cross-site scripting (XSS) vulnerabilities in Apache Sling API before 2.2.2 and Apache Sling Servlets Post before 2.1.2 allow remote attackers to inject arbitrary web script or HTML via the URI, related to (1) org/apache/sling/api/servlets/HtmlResponse and (2) org/apache/sling/servlets/post/HtmlResponse. | CVSS2: 4.3 | 3% Низкий | больше 10 лет назад | |
GHSA-rxvx-44w5-44r7 Improper Neutralization of Input During Web Page Generation in Apache Sling | 3% Низкий | больше 3 лет назад |
Уязвимостей на страницу