Lucene search

K
cvelistRedhatCVELIST:CVE-2010-0736
HistoryMar 19, 2010 - 7:00 p.m.

CVE-2010-0736

2010-03-1919:00:00
redhat
www.cve.org
1
cve-2010-0736
web script injection
html injection
view_queryform function

AI Score

5.4

Confidence

High

EPSS

0.002

Percentile

60.2%

Cross-site scripting (XSS) vulnerability in the view_queryform function in lib/viewvc.py in ViewVC before 1.0.10, and 1.1.x before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via “user-provided input.”

AI Score

5.4

Confidence

High

EPSS

0.002

Percentile

60.2%