CVE-2014-100006
13.01.2015, 11:59
Multiple cross-site scripting (XSS) vulnerabilities in modules_v3/googlemap/wt_v3_street_view.php in webtrees before 1.5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) map, (2) streetview, or (3) reset parameter.
Vendor | Product | Version |
---|---|---|
webtrees | webtrees | 𝑥 ≤ 1.5.1 |
𝑥
= Vulnerable software versions
References