Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20889
HistoryJul 25, 2019 - 5:48 a.m.

Cross-site Scripting (XSS)

2019-07-2505:48:01
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4

0.001 Low

EPSS

Percentile

24.8%

http-file-server is vulnerable to cross-site scripting (XSS) attack. It is possible because it does not handle the file name input from the user, allowing a malicious user to inject arbitrary script though it.

0.001 Low

EPSS

Percentile

24.8%