ZeroHour

CVE-2018-1000129

CVSS 3.0
6.1 medium
EPSS
25%p98
Published
()
Modified
Description

An XSS vulnerability exists in the Jolokia agent version 1.3.7 in the HTTP servlet that allows an attacker to execute malicious javascript in the victim's browser.

Vendors
jolokia
Products
jolokia
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.