Lucene search

K
cvelistMitreCVELIST:CVE-2014-5108
HistoryJul 28, 2014 - 3:00 p.m.

CVE-2014-5108

2014-07-2815:00:00
mitre
www.cve.org
4
cve-2014-5108
xss
single_pages
download_file.php
http referer header
index.php/download_file

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

50.7%

Cross-site scripting (XSS) vulnerability in single_pages\download_file.php in concrete5 before 5.6.3 allows remote attackers to inject arbitrary web script or HTML via the HTTP Referer header to index.php/download_file.

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

50.7%

Related for CVELIST:CVE-2014-5108