2.6
CVSSv2

CVE-2011-4457

Published: 17/11/2011 Updated: 18/11/2011
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:P/I:N/A:N

Vulnerability Summary

OWASP HTML Sanitizer (aka owasp-java-html-sanitizer) prior to 88, when JavaScript is disabled, allows user-assisted remote malicious users to obtain potentially sensitive information via a crafted FORM element within a NOSCRIPT element.

Vulnerable Product Search on Vulmon Subscribe to Product

owasp-java-html-sanitizer project owasp-java-html-sanitizer

owasp-java-html-sanitizer project owasp-java-html-sanitizer 42

owasp-java-html-sanitizer project owasp-java-html-sanitizer 50

owasp-java-html-sanitizer project owasp-java-html-sanitizer 48

owasp-java-html-sanitizer project owasp-java-html-sanitizer 74