1 results (0.001 seconds)
CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 3

CVE-2014-2689 – Offiria 2.1.0 Cross Site Scripting
https://notcve.org/view.php?id=CVE-2014-2689
07 May 2014 — Cross-site scripting (XSS) vulnerability in Offiria 2.1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to installer/index.php. Vulnerabilidad de XSS en Offiria 2.1.0 y anteriores permite a atacantes remotos inyectar secuencias de comandos web o HTML arbitrarios a través de PATH_INFO hacia installer/index.php. Offiria version 2.1.0 suffers from a cross site scripting vulnerability. • https://packetstorm.news/files/id/126530 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •