CVE-2014-3876
EPSS 0.25%Published: 6/18/2014Modified: 5/10/2026
Also known as:DEBIAN-CVE-2014-3876
Description
Multiple cross-site scripting (XSS) vulnerabilities in Frams' Fast File EXchange (F*EX, aka fex) before fex-20140530 allow remote attackers to inject arbitrary web script or HTML via the (1) akey parameter to rup or (2) disclaimer or (3) gm parameter to fuc.
Affected packages (1)
- Debian/fexfrom 0, < 20140530-1