CVE-2014-3877

Loading...

General

Score:4.3/10.0
Severity:Low
Category:N/A

Impact Metrics

Confidentiality:None
Integrity:Partial
Availability:None

Exploitability Metrics

Access Vector:Network
Access Complexity:Medium
Authentication:None

Relative vulnerabilities

CVE-2014-3875, CVE-2014-3876

Published on 18/06/14 - Updated on 18/06/14

Description

Incomplete blacklist vulnerability in Frams' Fast File EXchange (F*EX, aka fex) before fex-20140530 allows remote attackers to conduct cross-site scripting (XSS) attacks via the addto parameter to fup.

Category:

There is insufficient information about the issue to classify it; details are unknown or unspecified.

Security Notices

US National Vulnerability DatabaseCVE-2014-3877
Debian LTSDLA-68-1

Exploits

No exploits available for this CVE in our database.

Relative technologies

VendorProduct
ulli_horlacherfex

Share this vulnerability with:

Twitter Facebook LinkedIn Mail