Cross-site scripting (XSS) vulnerability in AttachmentsList.aspx in Accela Civic Platform Citizen Access portal allows remote attackers to inject arbitrary web script or HTML via the iframeid parameter.
References
Link Resource
http://www.kb.cert.org/vuls/id/665280 Third Party Advisory US Government Resource
http://www.kb.cert.org/vuls/id/JLAD-ABMPVA Third Party Advisory US Government Resource
http://www.securityfocus.com/bid/91765 Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: certcc

Published: 2016-07-15T18:00:00

Updated: 2016-11-25T19:57:01

Reserved: 2016-06-16T00:00:00


Link: CVE-2016-5660

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2016-07-15T18:59:09.140

Modified: 2020-08-25T20:59:20.733


Link: CVE-2016-5660

JSON object: View

cve-icon Redhat Information

No data.

CWE