Loading HuntDB...

CVE-2019-0213

UNKNOWN
Published 2019-04-30T21:35:47
Actions:
No CVSS data available

Description

In Apache Archiva before 2.2.4, it may be possible to store malicious XSS code into central configuration entries, i.e. the logo URL. The vulnerability is considered as minor risk, as only users with admin role can change the configuration, or the communication between the browser and the Archiva server must be compromised.

Available Exploits

No exploits available for this CVE.

Related News

No news articles found for this CVE.

Affected Products

References

Published: 2019-04-30T21:35:47
Last Modified: 2024-08-04T17:44:14.810Z
Copied to clipboard!