Lucene search

K
nvd[email protected]NVD:CVE-2016-3709
HistoryJul 28, 2022 - 5:15 p.m.

CVE-2016-3709

2022-07-2817:15:07
CWE-79
web.nvd.nist.gov
4
cross-site scripting
libxml
vulnerability
commit 960f0e2

CVSS3

6.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

34.1%

Possible cross-site scripting vulnerability in libxml after commit 960f0e2.

Affected configurations

Nvd
Node
xmlsoftlibxml2Range2.9.22.9.11
VendorProductVersionCPE
xmlsoftlibxml2*cpe:2.3:a:xmlsoft:libxml2:*:*:*:*:*:*:*:*

CVSS3

6.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

34.1%