Lucene search

K
cvelistFlexeraCVELIST:CVE-2013-3484
HistoryApr 02, 2014 - 3:00 p.m.

CVE-2013-3484

2014-04-0215:00:00
flexera
www.cve.org

5.8 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

60.8%

Multiple cross-site scripting (XSS) vulnerabilities in dotCMS before 2.3.2 allow remote attackers to inject arbitrary web script or HTML via the (1) _loginUserName parameter to application/login/login.html, (2) my_account_login parameter to c/portal_public/login, or (3) email parameter to forgotPassword.

5.8 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

60.8%

Related for CVELIST:CVE-2013-3484