CVE-2016-5005
Cross-site scripting (XSS) vulnerability in Apache Archiva 1.3.9 and earlier allows remote authenticated administrators
Cross-site scripting (XSS) vulnerability in Apache Archiva 1.3.9 and earlier allows remote authenticated administrators to inject arbitrary web script or HTML via the connector.sourceRepoId parameter to admin/addProxyConnector_commit.action.
MEDIUM · CVSS 4.8
EPSS 0.00547
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0