Cross-site scripting (XSS) vulnerability in the web frontend in OpenCA 0.9.1-8 and earlier, and 0.9.2 RC6 and earlier, allows remote attackers to inject arbitrary web script or HTML via the form input fields.
References
Link | Resource |
---|---|
http://www.openca.org/news/CAN-2004-0787.txt | Patch Vendor Advisory |
http://www.securityfocus.com/bid/11113 | Patch Vendor Advisory |
http://marc.info/?l=bugtraq&m=109448767123954&w=2 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/17274 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-10-19 21:00
Updated : 2017-07-10 18:30
NVD link : CVE-2004-0787
Mitre link : CVE-2004-0787
JSON object : View
CWE
Products Affected
openca
- openca