kittoframework kitto version 0.5.1 is vulnerable to an XSS in the 404 page resulting in information disclosure
References
Link | Resource |
---|---|
https://elixirforum.com/t/kitto-a-framework-for-interactive-dashboards/2089/13 | Third Party Advisory |
Configurations
Information
Published : 2017-07-17 06:18
Updated : 2017-07-19 09:52
NVD link : CVE-2017-1000063
Mitre link : CVE-2017-1000063
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
kitto_project
- kitto