ZeroHour

CVE-2016-3089

CVSS 3.0
6.1 medium
EPSS
5%p91
Published
()
Modified
Description

Cross-site scripting (XSS) vulnerability in the SWF panel in Apache OpenMeetings before 3.1.2 allows remote attackers to inject arbitrary web script or HTML via the swf parameter.

Vendors
apache
Products
openmeetings
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.