Lucene search

K
cvelistRedhatCVELIST:CVE-2013-6416
HistoryDec 07, 2013 - 12:00 a.m.

CVE-2013-6416

2013-12-0700:00:00
redhat
www.cve.org

5.3 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

56.9%

Cross-site scripting (XSS) vulnerability in the simple_format helper in actionpack/lib/action_view/helpers/text_helper.rb in Ruby on Rails 4.x before 4.0.2 allows remote attackers to inject arbitrary web script or HTML via a crafted HTML attribute.

5.3 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

56.9%