ZeroHour

CVE-2016-5398

CVSS 3.0
5.4 medium
EPSS
<1%p56
Published
()
Modified
Description

Cross-site scripting (XSS) vulnerability in Business Process Editor in Red Hat JBoss BPM Suite before 6.3.3 allows remote authenticated users to inject arbitrary web script or HTML by levering permission to create business processes.

Vendors
redhat
Products
jboss bpm suite
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.