Cross-site scripting (XSS) vulnerability in the plugin upgrade form in Revive Adserver before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via the filename of an uploaded file containing errors.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2015-10-14T19:00:00

Updated: 2018-10-09T18:57:01

Reserved: 2015-09-25T00:00:00


Link: CVE-2015-7365

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2015-10-14T19:59:03.800

Modified: 2018-10-09T19:58:03.407


Link: CVE-2015-7365

JSON object: View

cve-icon Redhat Information

No data.

CWE