Search Results (Refine Search)
- CPE Product Version: cpe:/a:redhat:openshift:2.0::~~enterprise~~~
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2014-1869 |
Multiple cross-site scripting (XSS) vulnerabilities in ZeroClipboard.swf in ZeroClipboard before 1.3.2, as maintained by Jon Rohan and James M. Greene, allow remote attackers to inject arbitrary web script or HTML via vectors related to certain SWF query parameters (aka loaderInfo.parameters). Published: February 07, 2014; 7:55:06 PM -0500 |
V3.x:(not available) V2.0: 4.3 MEDIUM |
CVE-2013-2186 |
The DiskFileItem class in Apache Commons FileUpload, as used in Red Hat JBoss BRMS 5.3.1; JBoss Portal 4.3 CP07, 5.2.2, and 6.0.0; and Red Hat JBoss Web Server 1.0.2 allows remote attackers to write to arbitrary files via a NULL byte in a file name in a serialized instance. Published: October 28, 2013; 5:55:05 PM -0400 |
V3.x:(not available) V2.0: 7.5 HIGH |