CVE-2014-9439

Cross-site scripting (XSS) vulnerability in Easy File Sharing Web Server 6.8 allows remote attackers to inject arbitrary web script or HTML via the username field during registration, which is not properly handled by forum.ghp.
Configurations

Configuration 1 (hide)

cpe:2.3:a:efssoft:easy_file_sharing_web_server:6.8:*:*:*:*:*:*:*

History

No history.

Information

Published : 2015-01-02 19:59

Updated : 2024-02-04 18:35


NVD link : CVE-2014-9439

Mitre link : CVE-2014-9439

CVE.ORG link : CVE-2014-9439


JSON object : View

Products Affected

efssoft

  • easy_file_sharing_web_server
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')