Multiple cross-site scripting (XSS) vulnerabilities in the administration pages in Kallithea before 0.2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) first name or (2) last name user details, or the (3) repository, (4) repository group, or (5) user group description.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: redhat
Published: 2017-09-19T15:00:00
Updated: 2024-08-06T04:54:16.332Z
Reserved: 2015-02-17T00:00:00
Link: CVE-2015-1864

No data.

Status : Deferred
Published: 2017-09-19T15:29:00.617
Modified: 2025-04-20T01:37:25.860
Link: CVE-2015-1864

No data.