Security Advisory

CVE-2016-0712

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-04-11 14:00:00
Last updated 2024-08-05 22:30:03
Assigner redhat
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Apache Jetspeed before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to portal.