Description
Cross-site scripting (XSS) vulnerability in Apache Archiva 1.2 through 1.2.2 and 1.3 before 1.3.8 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters, related to the home page.
Remediation
References
http://archiva.apache.org/security.html
http://www.securitytracker.com/id/1030130
http://www.securityfocus.com/bid/66991
http://www.securityfocus.com/archive/1/531884/100/0/threaded
Related Vulnerabilities
CVE-2021-22569 Vulnerability in maven package com.google.protobuf:protobuf-java
CVE-2020-7795 Vulnerability in npm package get-npm-package-version
CVE-2019-1020013 Vulnerability in npm package parse-server
CVE-2018-12418 Vulnerability in maven package com.github.junrar:junrar
CVE-2020-9482 Vulnerability in maven package org.apache.nifi.registry:nifi-registry-core