4.3
CVSSv2

CVE-2011-0533

Published: 17/02/2011 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Apache Continuum 1.1 up to and including 1.2.3.1, 1.3.6, and 1.4.0 Beta; and Archiva 1.3.0 up to and including 1.3.3 and 1.0 up to and including 1.22 allows remote malicious users to inject arbitrary web script or HTML via a crafted parameter, related to the autoIncludeParameters setting for the extremecomponents table.

Vulnerable Product Search on Vulmon Subscribe to Product

apache continuum 1.4.0

apache continuum 1.2.3

apache continuum 1.1

apache continuum 1.2.3.1

apache continuum 1.2.2

apache continuum 1.2

apache continuum 1.3.6

apache archiva 1.2.1

apache archiva 1.3.3

apache archiva 1.0.3

apache archiva 1.1.4

apache archiva 1.2

apache archiva 1.2.2

apache archiva 1.0

apache archiva 1.1.3

apache archiva 1.0.1

apache archiva 1.3

apache archiva 1.1.2

apache archiva 1.1

apache archiva 1.3.1

apache archiva 1.1.1

apache archiva 1.0.2

apache archiva 1.3.2