-
Type:
Bug
-
Resolution: Duplicate
-
Priority:
High
-
Affects Version/s: 2.5.4
-
Component/s: None
-
Environment:
Standalone
Description:
XSS via the "Name" field in app/spaces/editspace.action.
Exploit:
blah"><script>alert(document.cookie)</script><x x="
- duplicates
-
CONFSERVER-8917 XSS vulnerability: space name and key not validated nor escaped
-
- Closed
-