Required CVE Record Information
Description
Cross-site scripting (XSS) vulnerability in Direct Web Remoting (DWR) through 2.0.10 and 3.x through 3.0.RC2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References 2 Total
- jvn.jp: JVN#52422792 third-party-advisory
- jvndb.jvn.jp: JVNDB-2014-000118 third-party-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- jvn.jp: JVN#52422792 third-party-advisoryx_transferred
- jvndb.jvn.jp: JVNDB-2014-000118 third-party-advisoryx_transferred