ZeroHour

CVE-2016-7103

PoC
CVSS 3.1
6.1 medium
EPSS
23%p98
Published
()
Modified
Description

Cross-site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via the closeText parameter of the dialog function.

Vendors
jqueryuioraclefedoraprojectnetappredhatjuniperdebian
Products
jquery ui, application express, business intelligence, hospitality cruise fleet management, oss support tools, primavera unifier, siebel ui framework, weblogic server, fedora, snapcenter, openstack, junos
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.