Unspecified vulnerability in Apache Wicket 1.4.x before 1.4.23, 1.5.x before 1.5.11, and 6.x before 6.8.0 allows remote attackers to obtain sensitive information via vectors that cause raw HTML templates to be rendered without being processed and reading the information that is outside of wicket:panel markup.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2014-02-10T23:00:00

Updated: 2014-02-10T22:57:01

Reserved: 2013-02-19T00:00:00


Link: CVE-2013-2055

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2014-02-10T23:55:04.933

Modified: 2014-02-11T20:14:50.400


Link: CVE-2013-2055

JSON object: View

cve-icon Redhat Information

No data.