Lucene search

K
redhatcveRedhat.comRH:CVE-2016-7033
HistorySep 06, 2016 - 4:48 a.m.

CVE-2016-7033

2016-09-0604:48:52
redhat.com
access.redhat.com
10

0.001 Low

EPSS

Percentile

47.7%

JBoss BRMS 6 and BPM Suite 6 are vulnerable to a stored XSS via dashbuilder. Remote, authenticated attackers that have privileges to access dashbuilder (usually admins) can store scripts in several editable fields, which are not properly sanitized before showing to other users, including other admins.

0.001 Low

EPSS

Percentile

47.7%

Related for RH:CVE-2016-7033