CVE-2014-125034

A vulnerability has been found in stiiv contact_app and classified as problematic. Affected by this vulnerability is the function render of the file libs/View.php. The manipulation of the argument var leads to cross site scripting. The attack can be launched remotely. The patch is named 67bec33f559da9d41a1b45eb9e992bd8683a7f8c. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217183.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:contact_app_project:contact_app:*:*:*:*:*:*:*:*

History

11 Apr 2024, 00:51

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad en stiiv contact_app y se ha clasificado como problemática. La función render del archivo libs/View.php es afectada por esta vulnerabilidad. La manipulación del argumento var conduce a cross-site scripting. El ataque se puede lanzar de forma remota. El parche se llama 67bec33f559da9d41a1b45eb9e992bd8683a7f8c. Se recomienda aplicar un parche para solucionar este problema. El identificador asociado de esta vulnerabilidad es VDB-217183.

07 Nov 2023, 02:18

Type Values Removed Values Added
CWE CWE-79

20 Oct 2023, 06:15

Type Values Removed Values Added
Summary A vulnerability has been found in stiiv contact_app and classified as problematic. Affected by this vulnerability is the function render of the file libs/View.php. The manipulation of the argument var leads to cross site scripting. The attack can be launched remotely. The name of the patch is 67bec33f559da9d41a1b45eb9e992bd8683a7f8c. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217183. A vulnerability has been found in stiiv contact_app and classified as problematic. Affected by this vulnerability is the function render of the file libs/View.php. The manipulation of the argument var leads to cross site scripting. The attack can be launched remotely. The patch is named 67bec33f559da9d41a1b45eb9e992bd8683a7f8c. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217183.
CWE CWE-79

Information

Published : 2023-01-02 11:15

Updated : 2024-05-17 00:58


NVD link : CVE-2014-125034

Mitre link : CVE-2014-125034

CVE.ORG link : CVE-2014-125034


JSON object : View

Products Affected

contact_app_project

  • contact_app
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')