Description
The viewdefaultdecorator resource in Atlassian Confluence Server before version 6.6.1 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the key parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin Integration for Contact Form 7 HubSpot Cross-Site Scripting (1.1.9)
WordPress Plugin Google Map SQL Injection (2.2.5)
WordPress Other Vulnerability (CVE-2007-4153)
MySQL CVE-2021-2065 Vulnerability (CVE-2021-2065)
Oracle Application Server CVE-2006-3706 Vulnerability (CVE-2006-3706)