360
VMScore

CVE-2011-4457

CVSSv4: NA | CVSSv3: NA | CVSSv2: 2.6 | VMScore: 360 | EPSS: 0.00221 | KEV: Not Included
Published: 17/11/2011 Updated: 21/11/2024

Vulnerability Summary

OWASP HTML Sanitizer (aka owasp-java-html-sanitizer) prior to 88, when JavaScript is disabled, allows user-assisted remote malicious users to obtain potentially sensitive information via a crafted FORM element within a NOSCRIPT element.

Vulnerable Product Search on Vulmon Subscribe to Product

owasp-java-html-sanitizer project owasp-java-html-sanitizer

owasp-java-html-sanitizer project owasp-java-html-sanitizer 42

owasp-java-html-sanitizer project owasp-java-html-sanitizer 48

owasp-java-html-sanitizer project owasp-java-html-sanitizer 50

owasp-java-html-sanitizer project owasp-java-html-sanitizer 74