CVE-2019-0213
UNKNOWN
Published 2019-04-30T21:35:47
Actions:
No CVSS data available
Description
In Apache Archiva before 2.2.4, it may be possible to store malicious XSS code into central configuration entries, i.e. the logo URL. The vulnerability is considered as minor risk, as only users with admin role can change the configuration, or the communication between the browser and the Archiva server must be compromised.
Available Exploits
No exploits available for this CVE.
Related News
No news articles found for this CVE.
Affected Products
Affected Versions:
References
Published: 2019-04-30T21:35:47
Last Modified: 2024-08-04T17:44:14.810Z
Copied to clipboard!