MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in amMap 2.6.3 allow remote attackers to inject arbitrary web script or HTML via the (1) data_file or (2) settings_file parameter to ammap.swf, or (3) the data_file parameter to amtimeline.swf
Published Dec 28, 2014
4.3
MEDIUMCVSS 2.0
EPSS 1.84%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.