CVE-2016-6319
19.08.2016, 21:59
Cross-site scripting (XSS) vulnerability in app/helpers/form_helper.rb in Foreman before 1.12.2, as used by Remote Execution and possibly other plugins, allows remote attackers to inject arbitrary web script or HTML via the label parameter.
Vendor | Product | Version |
---|---|---|
theforeman | foreman | 𝑥 ≤ 1.12.1 |
𝑥
= Vulnerable software versions
References