Description

Cross-site scripting (XSS) vulnerability in Apache Archiva 1.2 through 1.2.2 and 1.3 before 1.3.8 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters, related to the home page.

Remediation

References

Related Vulnerabilities

Severity

Critical

Classification

CWE-79

Tags

Patch Vendor Advisory