PT-2020-7133 · Jara · Jara

Henri Salo

·

Published

2020-01-21

·

Updated

2020-01-23

·

CVE-2011-4095

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Jara version 1.6
Description The issue is related to a Cross-Site Scripting (XSS) vulnerability. Cross-Site Scripting is a type of security vulnerability that occurs when an attacker is able to inject malicious scripts into a website, which are then executed by the user's browser.
Recommendations For Jara version 1.6, update to a version that includes a fix for the XSS vulnerability, if available. As a temporary workaround, consider implementing input validation and sanitization for all user-input fields to minimize the risk of exploitation. Restrict access to sensitive areas of the application to minimize the risk of XSS attacks.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-4095

Affected Products

Jara