CVE-2013-6880

Open redirect in proxy.php in FlashCanvas before 1.6 allows remote attackers to redirect users to arbitrary web sites and conduct cross-site scripting (XSS) attacks via the HTTP Referer header.
Configurations

Configuration 1 (hide)

cpe:2.3:a:elvedia:flashcanvas:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-11-22 18:15

Updated : 2024-02-28 17:28


NVD link : CVE-2013-6880

Mitre link : CVE-2013-6880

CVE.ORG link : CVE-2013-6880


JSON object : View

Products Affected

elvedia

  • flashcanvas
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')