MEDIUM
Cross-site scripting (XSS) vulnerability in cake/libs/error.php in CakePHP before 1.1.7.3363 allows remote attackers to inject arbitrary web script or HTML via the URL, which is reflected back in a 404 ("Not Found") error page
Published Aug 10, 2006
6.5
MEDIUMCVSS 3.1
EPSS 1.21%
Description
Affected products
Remediation
References (7)
Change history (0)
No recorded changes yet.